antibiotic-metronidazoleflagyl[.]com
“DDoS-Guard”
antibiotic-metronidazoleflagyl.com — المحتوى غير متوفر. ملخص الأدلة: VirusTotal 2/94; URLQuery 2 alerts; PhishDestroy score 76/100. مسجّل النطاق: Fewmoretaps OU d/b/a T….
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Analysis indicates that antibiotic‑metronidazoleflagyl.com was registered on 24 April 2026 and is currently flagged as a high‑risk generic phishing site. The domain resolves to 3.71.180.249, an AWS EC2 instance in the eu‑central‑1 region of Germany, and presents a TLS certificate issued by Let’s Encrypt (R13). The authoritative nameservers are ares.trustname.com and zeus.trustname.com, both associated with the registrar Fewmoretaps OU operating under the trade name Trustname.com. The page title returned by the server is “DDoS‑Guard”, and the HTTP response code is 403, suggesting that direct content retrieval is blocked. Threat intelligence sources show the domain appears on one blocklist and has been added to the PhishDestroy blocklist. Gridinsoft assigns a trust score of 0 / 100, and two of ninety‑four VirusTotal scanners have reported detections. No additional payload or landing‑page details have been observed. Defenders should immediately block resolution of the domain and its associated IP address at perimeter and DNS layers, monitor for any outbound connections to the EC2 host, and consider adding the domain to internal phishing and malware blocklists. Continuous observation for new intelligence, especially any changes in the HTTP response or additional vendor detections, is advised.
استخبارات أمن الشبكات Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | buygenerics.com |
malicious | Sinkholed |
| Hagezi Threat Feed | antibiotic-metronidazoleflagyl.com |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب