airally[.]co
“AiRally”
ملخص الأدلة
This domain, airally.co, was identified as a credential harvesting site targeting users of the Binance cryptocurrency exchange. The site masqueraded as a legitimate Binance service, likely prompting visitors to enter sensitive account details such as usernames, passwords, and two-factor authentication codes. Once captured, these credentials could be used to gain unauthorized access to victims' cryptocurrency wallets, leading to financial theft and account compromise. The site's infrastructure and design were specifically tailored to exploit trust in the Binance brand, making it particularly dangerous for users unfamiliar with phishing tactics. Analysis indicates that airally.co was registered on December 22, 2025, through Web Commerce Communications Limited, a registrar often associated with malicious domain registrations. The domain resolved to the IP address 172.67.199.242 and was flagged by 4 out of 95 security vendors on VirusTotal, a relatively low but notable detection rate that suggests evasion techniques were employed. Additionally, the domain appeared on three security blocklists, including those maintained by MetaMask and SEAL, further confirming its malicious intent. The page title, AiRally, was likely chosen to mimic a legitimate service while avoiding immediate suspicion. If you visited airally.co or entered any credentials on the site, immediate action is required to mitigate potential damage. First, revoke access to any cryptocurrency wallets or exchange accounts linked to the credentials provided. Enable two-factor authentication if not already active, and monitor all connected accounts for unauthorized transactions. Consider transferring funds to a new wallet if compromise is suspected. Report the incident to Binance's official security team and any relevant financial authorities. Users should also scan their devices for malware, as phishing sites may distribute additional malicious payloads. Finally, remain vigilant for follow-up phishing attempts via email or social engineering, as attackers may reuse harvested data for further exploitation.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
المخطط الزمني للاكتشاف
-
Cloudflare Radar
تم حفظ فحص Cloudflare Radar · فتح الفحص
-
VirusTotal
3 ← 4
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب