MALICIOUS — CRITICAL
arbgovernance[.]com
The domain arbgovernance.com was registered on May 11 2026 through GoDaddy.com, LLC.
- VirusTotal
- 13/91
- Blocklists
- 2 · MetaMask, SEAL
- التوفر
- مغطى بعباءة · يمكن الوصول إليه · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
arbgovernance.com — مغطى بعباءة · يمكن الوصول إليه (HTTP 200). انتحال العلامة التجارية: Arb; نوع الاحتيال: Credential Phishing. ملخص الأدلة: VirusTotal 13/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, CyRadar); 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 100/100. مسجّل النطاق: GoDaddy.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
ARB Governance brand‑impersonation site arbgovernance.com
The domain arbgovernance.com was registered on May 11 2026 through GoDaddy.com, LLC.
The domain arbgovernance.com was registered on May 11 2026 through GoDaddy.com, LLC. It is currently classified as a high‑risk brand‑impersonation site targeting the ARB brand and is active as of July 12 2026. The page title returned by the web server is “ARB Governance”, matching the legitimate brand’s naming convention and designed to lure victims into credential submission. Infrastructure analysis shows the domain resolves to IP address 76.223.105.230, which is associated with an AWS Global Accelerator endpoint located in the United States. Authoritative name servers are ns29.domaincontrol.com and ns30.domaincontrol.com, both operated by GoDaddy. The site serves over HTTPS using a GoDaddy Secure Certificate Authority – G2 certificate, and HTTP requests receive a 200 OK response. Threat intelligence indicates the site is being used for phishing_login attacks that masquerade as official ARB governance portals. The Gridinsoft trust score is 0 out of 100, and the domain appears on three public blocklists, including PhishDestroy, MetaMask, and SEAL. AlienVault OTX has referenced the domain in one pulse, and VirusTotal reported a single detection out of ninety‑five scanners, confirming at least one security vendor flags the site as malicious. Defenders should immediately block outbound and inbound traffic to arbgovernance.com and its resolved IP address, add the domain to internal blacklist feeds, and monitor DNS queries for the associated name servers. Incident response teams are advised to alert users of the ARB brand about the fraudulent login page, and threat‑intel sharing channels should be updated with the observed indicators to improve detection across the ecosystem.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
نطاق تغطية البيانات12 recorded checks
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
تحليل إعدادات الموقع
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.