app-1lnch[.]eu[.]com
“app-1lnch.eu.com | 522: Connection timed out”
ملاحظة محفوظة
تباين العناوين المرصود
ملخص الأدلة
The domain app-1lnch.eu.com is currently classified as a generic phishing site with a high risk rating. The service returned an HTTP 521 response and a page title indicating a 522 connection timeout, suggesting that the malicious front‑end is intermittently unavailable or deliberately throttled. The domain remains active as of the report date, July 12, 2026, and continues to be listed on a public security blocklist.
Infrastructure analysis shows that the domain was created on February 21, 2026 and is registered through Instra Corporation Pty Ltd. Authoritative name servers are ns1.centralnic.net through ns4.centralnic.net, pointing to a hosting arrangement that leverages Cloudflare’s edge network. The authoritative IP resolves to 104.21.48.1, belonging to AS13335 Cloudflare, Inc., located in the United States. TLS termination is provided by Google Trust Services under the WE1 certificate, and the service negotiates HTTP/3, confirming modern protocol support.
Detection metrics indicate limited but notable vendor awareness: two out of ninety‑five VirusTotal scanners have flagged the domain, and the Gridinsoft trust score is 0 out of 100, reflecting an extremely low confidence rating. The domain is also blocked by the PhishDestroy repository, and it appears on one additional security blocklist. These signals collectively reinforce the high‑risk assessment despite the relatively low number of vendor detections.
Uncertainty remains around the exact payload or credential‑stealing mechanisms employed, as the site does not currently deliver visible content beyond the timeout error. Defenders should therefore block the domain at network perimeters, enforce DNS filtering, and monitor for any resolution to the associated Cloudflare IP. Continuous re‑evaluation is advised, given the dynamic nature of phishing infrastructure and the potential for the site to become active again.
Data Coverage
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026
المخطط الزمني للاكتشاف
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب