跳转到安全报告
⚠️
该域名已被标记为恶意域名
安全引擎报告检测:16。 请格外小心——不要输入凭据或个人信息。
域安全和威胁情报

t0ki1lk-ev1in1z[.]com

“e-Devlet Kapısı”

威胁判定 关键 98/100 证据评分
可用性 内容不可用 最新观察中的内容不可用
病毒检测总数:16/93 品牌冒充:Govtr
OTX: 14 refs 2026年2月26日 Govtr
报告概览

t0ki1lk-ev1in1z.com — 内容不可用 (HTTP 502). 品牌冒充:Govtr. 证据摘要: VirusTotal 16/93 (ADMINUSLabs, alphaMountain.ai, CyRadar, Forcepoint ThreatSeeker, Fortinet); URLScan malicious verdict; PhishDestroy score 98/100.

为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。

证据摘要
重要
Ref
96AE60C3
评分
98/100

This site, identified by the page title "e-Devlet Kapısı," is an impersonation of the official Turkish government e-Devlet portal. It poses a credential harvesting threat, designed to trick users into entering sensitive personal and login information under the guise of a legitimate government service.

Technical analysis reveals a high-risk profile. VirusTotal flagged the domain with 16 out of 95 detections, with specific flags from ADMINUSLabs, alphaMountain.ai, CyRadar, Forcepoint ThreatSeeker, and Fortinet. It is listed on 2 blocklists. The domain was created on 2026-02-21 and was hosted on IP address 84.201.25.240, located in Germany (DE), under AS214036 Ultahost, Inc. The SSL certificate in use is R12. The GridinSoft trust score is 0 out of 100.

The site is currently DOWN/OFFLINE. Despite being offline, the overall risk level is critical, as indicated by a DOM risk score of 98 out of 100, confirming its malicious nature and potential for harm if reactivated.

VirusTotal
VirusTotal
16 det.
OTX references
URLScan
URLScan
TLS 证书
已过期或未验证 -194d
年龄
6 mo
观测状态
内容不可用 502
PhishDestroy
DestroyList
已列入
数据覆盖范围 VirusTotal 16 / 93 URLQuery 报告已存储 — 详细判决待定 PhishStats 未检查 OTX 14 community references CF雷达 no data URLScan capture 存储的报告 URLScan verdict malicious DNS 阻断 未检查 TLS 已过期或未验证 WHOIS 6 mo old 屏幕截图 2 captures · 2 sources 重定向链 未探查

威胁响应 Pipeline

发现
Checks
Reports
可用性
12/13

公共封禁名单状态

已保存的截图

域名情报

域名
URLScan Verdict 恶意 score 100 Phishing brand: Govtr report ↗
服务器 / ASN nginx · AS214036 ULTAHOST-AS Ultahost, Inc., US
IP 信誉 abuse score 0/100 0 reports checked 2026年6月15日
IP 地址 84.201.25.240 DE
地理位置DE Frankfurt am Main, DE
网络AS214036 · Ultahost, Inc.
注册信息创建 2026年2月21日 (179d)
HTTP 状态码502 Error
首次不可用所需时间 55 days
统计口径 从第一个存储的滥用报告到第一次观察到内容不可用所经过的时间。这并不能确定原因。
每份报告包含哪些内容 存储的传出报告记录可以参考当时可用的证据,例如供应商判决、注册数据、托管详细信息、分类或屏幕截图。此页面无法推断收件人交付、接收、确认或操作的确切有效负载。
技术细节DNS、SSL SAN、时间戳
首次发现2026年2月26日
DOM Analysisanalyzed 2026年3月24日score 98/100
IoC Extractionscanned 2026年8月2日0 wallet · 0 Telegram IoCs
TLS Observationvalid from 2025年11月10日
页面标题
e-Devlet Kapısı
TLS 证书
已过期或未验证 · 颁发者 R12

取证情报

External Scripts 1
https://performance.radar.cloudflare.com/beacon.js
举报此域名 提交证据,帮助保护他人

VirusTotal 分析

16 / 93 安全供应商标记了该域
View on VT
Last analyzed Previous stored snapshot: 11 detections
ADMINUSLabs
alphaMountain.ai
CyRadar
Forcepoint ThreatSeeker
Fortinet
Lionic
Seclookup
SOCRadar
Sophos
Trustwave
Webroot

证据与外部报告

您是否受到本网站的影响?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。

欧洲刑警组织
查找您所在欧盟国家/地区的官方报告渠道
National police directory
警惕“数据恢复”诈骗! 犯罪分子可能会冒充调查员、律师或追债员再次联系受害者。 请勿支付预付费用或共享凭证。 了解有关康复欺诈的更多信息 →

向当地主管部门报告

选择您所在的国家/地区以获取 官方网络犯罪联系人创建投诉草稿 →

97个国家目录
AI辅助草稿——事件详细信息由AI提供商处理 自行审核并提交

检查任意域名

使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析

立即扫描

举报网络钓鱼

将可疑域名提交至我们的威胁数据库——保护社区

报告

实时威胁动态

最近的网络钓鱼报告和观察到的可用性变化

监控

随时掌握最新信息,确保安全

请实时监控威胁,或者如果您认为这是误报,请对该条目提出异议

实时威胁动态 对该列表提出异议
HTML · IFRAME

嵌入此报告

在您的网站或博客上分享此威胁情报

embed.html
<iframe
  src="https://phishdestroy.io/zh/embed/domain/t0ki1lk-ev1in1z.com"
  title="PhishDestroy threat report for t0ki1lk-ev1in1z.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>