الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 15. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

0i-m4[.]fwh[.]is

“Domain Suspended”

حكم التهديد حرجة 100/100 درجة الأدلة
التوفر لم يتم التحقق منها لم يتم التحقق من إمكانية الوصول الحالية
اكتشافات VirusTotal: 15/95 Spamhaus DBL: DBL_PHISH نوع الاحتيال: Account Takeover
24/10/2025
ملخص التقرير

0i-m4.fwh.is — لم يتم التحقق منها. نوع الاحتيال: Account Takeover. ملخص الأدلة: VirusTotal 15/95 (BitDefender, CyRadar, ESET, Emsisoft, Fortinet); Spamhaus DBL_PHISH; PhishDestroy score 100/100. مسجّل النطاق: UK-IFASTNET-20130530 (….

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
A2ACB5EF
الدرجة
100/100

This domain, 0i-m4.fwh.is, is identified as a credential harvesting or fake login portal designed to deceive users into submitting sensitive authentication details. Analysis indicates the site was structured to mimic legitimate login pages, likely targeting corporate, financial, or personal accounts. The domain’s infrastructure and rapid takedown suggest a short-lived but high-risk operation typical of phishing campaigns aimed at quick data exfiltration. Technical evidence confirms the domain’s malicious nature. The domain was registered on November 1, 2024, through a registrar associated with ASN 34119, and resolved to the IP address 77.72.1.44, hosted by AS12488 in the United Kingdom. At the time of assessment, 15 out of 95 security vendors on VirusTotal flagged the domain as malicious. Additionally, the domain appears on two security blocklists, including entries from independent phishing detection systems. The absence of an SSL certificate further indicates a lack of basic security measures, a common trait in low-effort phishing infrastructure. Users who visited 0i-m4.fwh.is or interacted with its content should take immediate remediation steps. If credentials were entered, reset passwords for all potentially affected accounts, prioritizing those with financial or administrative access. Enable multi-factor authentication where available to mitigate unauthorized access. Monitor accounts for unusual activity, such as unauthorized logins or transactions. Organizations should review logs for connections to 77.72.1.44 or the domain itself and update blocklists to prevent future access. Given the domain’s current offline status, further interaction is unlikely, but vigilance is advised for similar threats using the same infrastructure.

VirusTotal
VirusTotal
15 det.
ScamAdviser
Scamadviser
1/100
العمر
1.8 yr
الحالة المرصودة
لم يتم التحقق منها
PhishDestroy
قائمة الإتلاف
مُدرج
نطاق تغطية البيانات VirusTotal 15 / 95 URLQuery لم يتم التحقق منها PhishStats لم يتم التحقق منها OTX no community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict اكتمل التحليل حجب عناوين DNS لم يتم التحقق منها TLS لا توجد بيانات للشهادة WHOIS 22 mo old لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها Scamadviser 1/100
مؤشرات الأمان
SA Scamadviser Warnings 1/100
This website does not have many visitors This website is being iframed by another website We found many low rated websites on the same server DNSFilter reported this website as malicious in the last 30 days
According to the SSL check the certificate is valid

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
13/15

حالة قوائم الحظر العامة

لقطة محفوظة

معلومات النطاق

النطاق
URLScan Verdict اكتمل التحليل score 0 report ↗
الخادم / ASN openresty · AS12488 KRYSTAL Krystal Hosting Ltd, GB
سمعة عنوان IP abuse score 0/100 0 reports checked 27/07/2026
Registrar (base domain) UK-IFASTNET-20130530 (…
عنوان IP 77.72.1.44 GB
الموقع الجغرافيGB London, GB
الشبكةAS12488 · Krystal Hosting Ltd
Registration (base domain)fwh.is · تم إنشاؤه 01/11/2024 Expires 01/11/2026
Elapsed Since First Report 181 days
ما الذي نحتسبه Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: لم يتم التحقق منها.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف24/10/2025
DOM Analysisanalyzed 23/04/2026score 88/100
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://0i-m4.fwh.is/
خوادم الأسماءns1.byet.orgns2.byet.orgns3.byet.orgns4.byet.org
TLS Observationscanned 10/08/2026
عنوان الصفحة
Domain Suspended
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

15 / قام موردو الأمان 95 بوضع علامة على هذا المجال
View on VT
Last analyzed
BitDefender
CyRadar
ESET
Emsisoft
Fortinet
G-Data
Lionic
نتكرافت
Phishing Database
Seclookup
سوفوس
Trustwave
URLQuery
VIPRE
Webroot

الأدلة المؤرشفة

Wayback Machine Snapshot
لقطة تاريخية متاحة لمراجعة الأدلة
View Archive

الأدلة والتقارير الخارجية

نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/0i-m4.fwh.is"
  title="PhishDestroy threat report for 0i-m4.fwh.is"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>