arbhub[.]click
ملخص الأدلة
Analysis of arbhub.click indicates a high‑risk, active phishing infrastructure. The domain was registered on March 11 2026 through Sav.com, LLC and resolves to the Cloudflare‑managed address 172.67.133.249 (AS13335). DNS is served by alice.ns.cloudflare.com and lennon.ns.cloudflare.com, and the site presents a valid Let’s Encrypt certificate (E8). An HTTP request returns a 403 status and the sole observable page title is "Just a moment...", suggesting the site is deliberately obscuring its payload. The domain appears on three security blocklists (PhishDestroy, MetaMask, SEAL) and has been referenced in one AlienVault OTX pulse. VirusTotal scanning shows five of ninety‑four security vendors flagging the domain, contributing to its high risk rating. Current intelligence does not reveal the specific phishing lure or target brand; content beyond the title has not been captured. Defenders should immediately block arbhub.click at perimeter and DNS layers, consider sinkholing the associated IP range, and monitor for any related C2 patterns. Ongoing collection of HTTP responses and any associated payloads is recommended to refine detection rules and support attribution efforts.
Data Coverage
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | arbhub.click |
malicious | Sinkholed |
| DNS4EU | arbhub.click |
malicious | Sinkholed |
| Quad9 DNS | arbhub.click |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب