amlcrystal[.]org
فحص التصيد والأمان للنطاق amlcrystal.org
“AML Crystal — #1 TRON AML Check”
amlcrystal.org — المحتوى غير متوفر (HTTP 502). نوع الاحتيال: Aml Scam. ملخص الأدلة: VirusTotal 6/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, Kaspersky); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 68/100. مسجّل النطاق: Spaceship.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
On 29 July 2026, amlcrystal.org was observed as an active generic phishing infrastructure. The domain was registered on 10 July 2026 through the Spaceship, Inc. registrar and is served by the launch1.spaceship.net and launch2.spaceship.net authoritative nameservers. DNS resolution points to the IPv4 address 186.2.175.35. VirusTotal analysis shows that one of ninety‑one scanned security vendors flagged the domain, indicating at least a single detection.
The domain is presently listed on one external blocklist and is actively blocked by the PhishDestroy mitigation service, confirming that security‑focused entities have taken protective action. No additional public blocklists, Safe Browsing entries, or Open Threat Exchange (OTX) reports are currently associated with the domain. The site’s SSL certificate details, HTTP response code, and page title have not been disclosed in the available intelligence, leaving those aspects of the surface unknown. The limited detection footprint, combined with the recent creation date and the use of a reputable registrar, suggests a short‑lived campaign that relies on rapid deployment rather than established reputation.
Defenders should add amlcrystal.org to inbound and outbound filtering rules, monitor DNS queries for the associated IP address and nameservers, and ensure that any email or web traffic to the domain is blocked or sandboxed. Continuous re‑evaluation of VirusTotal and blocklist status is advised, as additional detections may emerge as the campaign matures. Organizations employing threat‑intel feeds should also consider correlating internal logs for any connections to 186.2.175.35 or the Spaceship nameservers to identify potential compromise attempts.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات · 2 identified
Modernizr is a JavaScript library that detects the features available in a user's browser.
modernizr.com ثقة 100٪DDoS-Guard is a Russian Internet infrastructure company which provides DDoS protection, content delivery network services, and web hosting services.
ddos-guard.net ثقة 100٪تحليل VirusTotal
الأدلة المؤرشفة
الأدلة والتقارير الخارجية
PD-20260729-4E3F88 Recipient: abuse@spaceship.com هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب