الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 7. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

0auth-collab[.]land

“Google”

حكم التهديد حرجة 81/100 درجة الأدلة
التوفر آخر نشاط معروف أحدث مراقبة إمكانية الوصول المخزنة
اكتشافات VirusTotal: 7/91 Spamhaus DBL: DBL_PHISH انتحال العلامة التجارية: Google المجال الصغير: 21 عمره أيام آخر نشاط معروف
26/07/2026 Google CDN

ملخص الأدلة

حرج
Evidence score
81/100

Analysis of the domain 0auth-collab.land indicates a high‑risk phishing operation that is currently active. The domain was registered on 21 July 2026 through NICENIC INTERNATIONAL GROUP CO., LIMITED and is hosted on the IP address 188.114.97.3, which is served by Cloudflare nameservers aida.ns.cloudflare.com and carter.ns.cloudflare.com. The SSL certificate presented by the site is issued by Google Trust Services under the WE1 intermediate, indicating that TLS termination is performed by a legitimate certificate authority. VirusTotal has recorded detections from 2 of 91 scanning engines, confirming that at least a subset of security vendors consider the host malicious.

The domain is already listed on a public phishing blocklist operated by PhishDestroy and appears on one additional security blocklist, reinforcing the consensus of malicious intent. No public page title or content analysis is presently available, so the exact phishing lures or target brands remain unverified. Nevertheless, the convergence of recent registration, active status, vendor detections, and inclusion on blocklists provides sufficient evidence for defensive action. Organizations should immediately add 0auth-collab.land to DNS‑based and proxy URL filtering rules, monitor outbound connections to 188.114.97.3, and enforce verification of the Google Trust Services certificate to detect any certificate pinning bypass.

Incident response teams should treat any authentication attempts directed at this domain as compromised and advise users to avoid entering credentials. Ongoing threat hunting should include searching for email subjects or attachments that reference “0auth‑collab” and correlating any internal logs that contain the domain or its IP. As additional intelligence (e.g., page content, malware payloads, or victim reports) becomes available, updates to detection signatures and blocklist entries should be applied.

VirusTotal
VirusTotal
7 det.
شهادة TLS
Google Trust Services
العمر
21d Very New!
الحالة المرصودة
آخر نشاط معروف HTTP 200
PhishDestroy
قائمة الإتلاف
مدرج

Data Coverage

VirusTotal 7 / 91 URLQuery لم يتم التحقق منها PhishStats لم يتم التحقق منها OTX no community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict اكتمل التحليل حجب عناوين DNS لم يتم التحقق منها TLS valid certificate, 85d WHOIS 21d old لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكاتRegistrar context
Registrar context NiceNIC
Stored registration data identifies NICENIC INTERNATIONAL GROUP CO., LIMITED (IANA 3765) as the registrar. PhishDestroy maintains separate NiceNIC abuse-report research; registrar association is contextual and is not an independent detection for this domain.
NiceNIC Verdict Full Investigation

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
11/13

تغطية قوائم الحظر

١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026

١٠ مصادر خارجية مراقبة لا تطابق

أدلة النتيجة المحفوظة

النتيجة وإسناد الإزالة

النتيجة
live_content
التوفر
content_live
السبب
content_served
درجة الثقة
90%
أول رصد
أحدث رصد

SHA-256 للدليل 8cd6cd62080f

المخطط الزمني للاكتشاف

  1. أول تسجيل

    أول قيمة محفوظة: يمكن الوصول إليه

  2. التوفر

    أول قيمة محفوظة: غير معروف

    993d00c35140
  3. التوفر

    غير معروف ← محتوى نشط

    4b08fec6549b
  4. التوفر

    محتوى نشط ← غير معروف

    6b4d92427e31
  5. التوفر

    غير معروف ← محتوى نشط

    5f434587149f
  6. التوفر

    محتوى نشط ← غير معروف

    7cebcfd4071c
  7. التوفر

    غير معروف ← محتوى نشط

    50f956f0bb11
  8. التوفر

    محتوى نشط ← غير معروف

    ca255b61650a
  9. التوفر

    غير معروف ← محتوى نشط

    1531714175b3
  10. التوفر

    محتوى نشط ← غير معروف

    d8f7d37d7f95
عرض الكل (3)
  1. التوفر

    غير معروف ← محتوى نشط

    b5df8a91eff8
  2. التوفر

    محتوى نشط ← غير معروف

    afa49a2b04dd
  3. التوفر

    غير معروف ← محتوى نشط

    8cd6cd62080f

بلاغات المجتمع

لم يبلّغ عنه أي عضو في المجتمع؛ شوهد أول مرة في 26/07/2026

عناوين URL الفريدة المبلغ عنها
1

لقطة محفوظة

عنوان الصفحة
Google
شهادة TLS
Valid transport encryption · صادرة عن Google Trust Services · valid for 85 days

معلومات النطاق

النطاق
URLScan Verdict اكتمل التحليل score 0 report ↗
الخادم / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden لا تُنسب سمعة Edge-IP إلى هذا المجال.
مسجّل النطاق NiceNIC RU(RU) PhishDestroy Investigation
جهة الإبلاغ عن إساءة الاستخدامabuse@nicenic.net
البحث في قاعدة بيانات WHOISICANN RDAP لـ 0auth-collab.land →
عنوان IP 188.114.97.3 CDN
الموقع الجغرافيCA Toronto, CA
الشبكةAS13335 · CloudFlare, Inc.
يتم إخفاء عنوان IP الأصلي خلف وكيل CDN. تحتوي نتائج IP العكسي لعنوان الحافة على مستأجرين غير مرتبطين؛ يتطلب العثور على المصدر نظام أسماء النطاقات السلبي أو بيانات شفافية الشهادة.
التسجيلتم إنشاؤه 21/07/2026 (21d · Very New!) Expires 21/07/2027
حالة HTTP200
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
تاريخ أول اكتشاف26/07/2026
DOM Analysisanalyzed 26/07/2026DOM analysis score 81/100
Submitted URLhttps://0auth-collab.land/
خوادم الأسماءaida.ns.cloudflare.comcarter.ns.cloudflare.com
بصمة TLS
رصد TLSصالح منذ 21/07/2026فُحص في 26/07/2026
ICANN OVERSIGHT

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.

التقنيات

حُدّدت ٣ تقنيات عالية الثقة

Google Web Server HSTS HTTP/3
Cloudflare Radar
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

7 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed First positive detection Previous stored snapshot: 5 detections
alphaMountain.ai
CRDF
Forcepoint ThreatSeeker
Fortinet
Gridinsoft
SOCRadar
سوفوس
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of 0auth-collab.land · checked Jul 26, 2026

45
Poor
Performance
FCP
1.66s
First Contentful Paint
LCP
10.64s
Largest Contentful Paint
CLS
0.715
Cumulative Layout Shift
TBT
31ms
Total Blocking Time
SI
6.61s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان

أدوات خارجية

HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/0auth-collab.land"
  title="PhishDestroy threat report for 0auth-collab.land"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

رسالة شكر صادقة جداً

منشئ مسودة ساخرة

المستلم
سياق الرسوم

مسودة ساخرة. أرقام الرسوم تقديرية، ولا ندّعي نسبتها بدقة إلى هذا النطاق.