keyverse[.]com[.]tr[.]orhandurna[.]com[.]tr
“Keyverse | Anasayfa”
keyverse.com.tr.orhandurna.com.tr — Неперевірений. Тип шахрайства: Crypto Drainer. Зведення доказів: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 78/100.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, orhandurna.com.tr, is under investigation for operating as a crypto drainer under the guise of the Keyverse brand. Analysis of the page title, Keyverse | Anasayfa, suggests an attempt to impersonate a legitimate cryptocurrency platform, likely targeting Turkish-speaking users. The infrastructure appears designed to facilitate unauthorized transactions, a hallmark of crypto drainer kits, though no specific kit has been conclusively identified at this stage. Infrastructure analysis reveals several technical indicators of concern. The domain resolves to IP address 185.205.19.130 and currently holds a VirusTotal detection score of 0/95, indicating no antivirus engines have flagged it yet. However, it appears on three security blocklists, including high-confidence sources. The domain was registered on April 30, 2026, an anomalous future date that may indicate registry manipulation or an attempt to evade detection. The SSL certificate is issued by Let's Encrypt, a common tactic to lend superficial legitimacy. Gridinsoft assigns a trust score of 0/100, further corroborating the suspicious nature of this infrastructure. The domain has been taken offline, likely in response to security community alerts and blocklist inclusions. While this mitigates immediate risk, the infrastructure may resurface under a different domain or IP. Users who interacted with this site should assume credential or wallet compromise and take immediate action: revoke smart contract approvals, transfer assets to a new wallet, and monitor for unauthorized transactions. The anomalous registration date and rapid blocklist adoption suggest organized malicious activity, warranting continued vigilance for related domains or IPs.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
Технології · 5 identified
Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com 100% впевненостіSwiper is a JavaScript library that creates modern touch sliders with hardware-accelerated transitions.
swiperjs.com 100% впевненостіjQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога