t0ki1lk-ev1in1z[.]com
“e-Devlet Kapısı”
t0ki1lk-ev1in1z.com — 内容不可用 (HTTP 502). 品牌冒充:Govtr. 证据摘要: VirusTotal 16/93 (ADMINUSLabs, alphaMountain.ai, CyRadar, Forcepoint ThreatSeeker, Fortinet); URLScan malicious verdict; PhishDestroy score 98/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This site, identified by the page title "e-Devlet Kapısı," is an impersonation of the official Turkish government e-Devlet portal. It poses a credential harvesting threat, designed to trick users into entering sensitive personal and login information under the guise of a legitimate government service.
Technical analysis reveals a high-risk profile. VirusTotal flagged the domain with 16 out of 95 detections, with specific flags from ADMINUSLabs, alphaMountain.ai, CyRadar, Forcepoint ThreatSeeker, and Fortinet. It is listed on 2 blocklists. The domain was created on 2026-02-21 and was hosted on IP address 84.201.25.240, located in Germany (DE), under AS214036 Ultahost, Inc. The SSL certificate in use is R12. The GridinSoft trust score is 0 out of 100.
The site is currently DOWN/OFFLINE. Despite being offline, the overall risk level is critical, as indicated by a DOM risk score of 98 out of 100, confirming its malicious nature and potential for harm if reactivated.
威胁响应 Pipeline
公共封禁名单状态
取证情报
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。