الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 15. قوائم الحظر العامة التي تبلغ عن تطابق: 2. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . The recorded recipient is abuse@godaddy.com. The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
3 months
Reports sent
1
Latest case ID
PD-20260504-B798C9
Current status
HTTP 200 at latest stored check
أمن المجال وذكاء التهديدات

atgoption[.]com

فحص التصيد والأمان للنطاق atgoption.com

“ATG OPTION”

حكم التهديد حرجة 100/100 درجة الأدلة
التوفر مغطى بعباءة · يمكن الوصول إليه تمت ملاحظة إمكانية الوصول من خلال عمليات فحص إخفاء الهوية
إشارات الخطر
اكتشافات VirusTotal: 15/91 تطابقات القائمة السوداء المخزنة: 2 URLQuery threat systems: 3 alerts نوع الاحتيال: Crypto Scam آخر نشاط معروف
15/91 VT URLQuery: 3 threat alerts 04/05/2026 2 Blocklists Crypto Scam 1 Report Sent Cloaking SG SG
ملخص التقرير

atgoption.com — مغطى بعباءة · يمكن الوصول إليه (HTTP 200). نوع الاحتيال: Crypto Scam. ملخص الأدلة: VirusTotal 15/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, ESET); URLQuery 3 alerts; Google Safe Browsing flagged; 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 100/100. مسجّل النطاق: GoDaddy.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة

Ref 5CE1A19A 100/100 حرج

PhishDestroy first observed atgoption.com on May 4, 2026. The captured page title is “ATG OPTION”. Stored page analysis classifies the content as crypto scam. Evidence score: 100/100 (critical).

6 independent sources recorded positive findings: VirusTotal, MetaMask, SEAL, Google Safe Browsing, DNS security resolvers, and URLQuery. VirusTotal recorded 15 detections among 91 engines: alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, ESET, Forcepoint ThreatSeeker, Fortinet, G-Data on Aug 9, 2026 at 02:18 UTC. MetaMask and SEAL listed the hostname in the separate external-blocklist snapshot on Aug 9, 2026 at 06:20 UTC. Google Safe Browsing flagged the domain: Social Engineering on Jun 26, 2026 at 04:00 UTC. DNS security checks returned 3 blocking results across 14 tested policies: Control D Adblock, Control D Family, Control D Malware; no observation timestamp was retained.

Cloaking was recorded with HTTP 200 on Aug 9, 2026 at 01:46 UTC. The cloaking probe recorded content divergence conditional delivery at 1/100 on Aug 9, 2026 at 01:46 UTC: alive_content: raw=ok; http=200; via=https_proxy. Registration records for the domain list GoDaddy.com, LLC as the registrar and Apr 30, 2026 as the creation date. At collection time, the hostname resolved to 139.99.4.248 on AS16276 (OVH SAS). The evidence archive retains 2 visual captures from PhishDestroy and URLQuery.

VirusTotal
VirusTotal
15 det.
URLQuery
URLQuery
3 threat alerts
DNS Security
3/14
شهادة TLS
GoDaddy.com
العمر
3 mo
الحالة المرصودة
مغطى بعباءة · يمكن الوصول إليه 200
PhishDestroy
قائمة الإتلاف
مُدرج
Reports Sent
1
نطاق تغطية البيانات12 recorded checks
VirusTotal 15 / 91 URLQuery 3 threat-system alerts PhishStats checked — no match recorded OTX no community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict اكتمل التحليل حجب عناوين DNS 3/14 TLS valid certificate, 141d WHOIS 3 mo old لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكات
DNS Provider Blocks 3 / 14
Controld Adblock Controld Family Controld Malware
Threat Detection Systems 3 alerts
Detection System Indicator Verdict Alert
Hagezi Threat Feed atgoption.com malicious Sinkholed
DNS4EU atgoption.com malicious Sinkholed
Hagezi Threat Feed cdn.staticfile.org malicious Sinkholed

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
12/13
Sent Report Recorded
Stored sent-report record for registrar GoDaddy.com, LLC, hosting provider, 1 abuse contact
abuse@godaddy.com
04/05/2026

حالة قوائم الحظر العامة

لقطة محفوظة

عنوان الصفحة
ATG OPTION
شهادة TLS
Valid transport encryption · صادرة عن GoDaddy.com · valid for 141 days

معلومات النطاق

النطاق
URLScan Verdict اكتمل التحليل score 0 report ↗
Google Safe Browsing تم وضع علامة عليها Social engineering checked 26/06/2026
Wallet IoCs 5 format-validated 1671yVnGHdoxtJDMLMSrayX4LMB8WSG… 3QfDfE6FAn4bxPv2tVLc4vSQpGfMaNL… bc1q4mwz8kl507830lpgck89shylenf…
الخادم / ASN nginx · AS16276 OVH SAS
سمعة عنوان IP abuse score 0/100 0 reports checked 13/07/2026
مسجّل النطاق GoDaddy US(US)
جهة الإبلاغ عن إساءة الاستخدامabuse@godaddy.com
البحث في قاعدة بيانات WHOISICANN RDAP لـ atgoption.com →
عنوان IP 139.99.4.248 SG
الموقع الجغرافيSG Singapore, SG
الشبكةAS16276 · OVH Singapore PTE. LTD
التسجيلتم إنشاؤه 30/04/2026 (100d)
Cloaking Cloaking Detected Content divergence · score 1/6
alive_content: raw=ok; http=200; via=https_proxy
checked 09/08/2026
Elapsed Since First Report 7 days
ما الذي نحتسبه Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: مغطى بعباءة · يمكن الوصول إليه.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
حالة HTTP200
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف04/05/2026
IoC Extractionscanned 29/07/20265 wallet · 0 Telegram IoCs
Submitted URLhttp://atgoption.com/
خوادم الأسماءns71.domaincontrol.comns72.domaincontrol.com
TLS Fingerprint
TLS Observationvalid from 02/05/2026scanned 04/05/2026
TLS SAN Domainstd.onabara.infowww.atgoption.com
Case ID
ICANN OVERSIGHT

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.
التقنيات · 8 identified
PHP
Programming languages

PHP is a general-purpose scripting language used for web development.

php.net ثقة 100٪
ThinkPHP
Web frameworks

ThinkPHP is an open-source PHP framework with MVC structure developed and maintained by Shanghai Topthink Company.

www.thinkphp.cn ثقة 100٪
Bootstrap
UI frameworks

Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.

getbootstrap.com ثقة 100٪
Vue.js
JavaScript frameworks

Vue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.

vuejs.org ثقة 100٪
Nginx
Web servers Reverse proxies

Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.

nginx.org ثقة 100٪
jQuery CDN
CDN

jQuery CDN is a way to include jQuery in your website without actually downloading and keeping it your website's folder.

code.jquery.com ثقة 100٪
jQuery
JavaScript libraries

jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.

jquery.com ثقة 100٪
HSTS
الأمن

HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.

www.rfc-editor.org ثقة 100٪
Detected via رادار Cloudflare · Wappalyzer engine
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

15 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed Previous stored snapshot: 14 detections
alphaMountain.ai
BitDefender
Chong Lua Dao
CyRadar
ESET
Forcepoint ThreatSeeker
Fortinet
G-Data
Google Safe Browsing
Gridinsoft
Lionic
SOCRadar
سوفوس
VIPRE
Webroot
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of atgoption.com · checked May 4, 2026

78
Needs Work
Performance
FCP
2.31s
First Contentful Paint
LCP
4.27s
Largest Contentful Paint
CLS
0.061
Cumulative Layout Shift
TBT
3ms
Total Blocking Time
SI
5.29s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا تفاعلت مع هذا المجال، أو أدخلت معلومات شخصية، أو قمت بالاتصال بمحفظة عملة مشفرة، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. لا توجد خدمة شرعية يمكنها ضمان استرداد العملات المشفرة المسروقة. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك
Wallet incident responseActions, evidence preservation, and official reporting

Use this section only if you connected a wallet, signed a transaction, disclosed a seed phrase, or transferred funds through atgoption.com.

ما الذي يجب أن أفعله على الفور؟
عاجل
  • إلغاء الموافقات على الرموز — use revoke.cash لإلغاء الصلاحيات الممنوحة للعقود الذكية الضارة
  • تحويل الأموال المتبقية إلى محفظة جديدة تمامًا. المحفظة التي تعرضت للاختراق لم تعد آمنة
  • تغيير جميع كلمات المرور — البريد الإلكتروني، وحسابات «إكستشينج»، وأي شيء يستخدم نفس كلمة المرور
  • تمكين المصادقة الثنائية (2FA) باستخدام تطبيق المصادقة (وليس الرسائل النصية القصيرة). تعطيل الاستعادة عبر الرسائل النصية القصيرة
  • بطاقات التجميد إذا قمت بإدخال بياناتك المصرفية على موقع التصيد الاحتيالي
ما هي المعلومات التي يجب أن أجمعها لإعداد تقريري؟
إرشادات مكتب التحقيقات الفيدرالي (FBI)

وفقًا لـ مكتب التحقيقات الفيدرالي (FBI)، وأهم التفاصيل هي بيانات المعاملات:

  • عناوين العملات المشفرة — محفظة المحتال (على سبيل المثال، 0x5856...35985)
  • المبلغ ونوع العملة المشفرة — المبلغ الدقيق (على سبيل المثال، 1.02345 ETH، 0.5 BTC، 500 USDT)
  • معرّف المعاملة (هاش) — المعرّف الفريد لمعاملة البلوكشين
  • التواريخ والأوقات الدقيقة — لكل معاملة ولأول اتصال مع المحتال
  • لقطات شاشة — مواقع الويب الاحتيالية، ورسائل الدردشة، ورسائل البريد الإلكتروني، ومعاملات المحافظ الرقمية، ووسائل التواصل الاجتماعي
  • جميع عناوين URL والنطاقات التي يستخدمها المحتال (بما في ذلك atgoption.com)
  • الاتصالات — رسائل البريد الإلكتروني، والرسائل النصية، وأرقام الهواتف، وأسماء المستخدمين التي استخدمها المحتال

حتى لو لم تكن جميع التفاصيل متوفرة — تقديم بلاغ على أي حال. فحتى المعلومات الجزئية تساعد في التحقيقات.

إلى أين يجب أن أبلغ عن عملية الاحتيال؟
  • مركز IC3 التابع لمكتب التحقيقات الفيدرالي (FBI) — مركز شكاوى الجرائم الإلكترونية (الإبلاغ على المستوى الفيدرالي في الولايات المتحدة)
  • اليوروبول — الإبلاغ عن الجرائم الإلكترونية في أوروبا (الاتحاد الأوروبي)
  • Chainabuse — الإبلاغ عن المحافظ المشبوهة عبر البورصات والمنصات المختلفة
  • منصة تداول العملات المشفرة الخاصة بك — notify its fraud team immediately; it may be able to preserve records or restrict funds held on its platform
  • الشرطة المحلية — يُنشئ سجلاً رسمياً، حتى لو لم يتمكن من اتخاذ إجراء فوري

A report is not a guarantee of recovery or investigation, but prompt, accurate transaction data can help authorities and service providers trace the incident.

كيف تعمل عمليات الاحتيال في مجال العملات المشفرة عادةً؟
  • المواقع الإلكترونية المزيفة — نسخ مطابقة تمامًا للمواقع الأصلية، مع تغيير طفيف في عناوين النطاقات
  • الموافقات الخبيثة — مطالبات «connect wallet» التي تمنح المهاجمين صلاحية إنفاق غير محدودة للرموز الرقمية
  • pig butchering — بناء الثقة على مدى أسابيع عبر Telegram/واتساب/تطبيقات المواعدة، ثم سرقة الأموال
  • عمليات الاحتيال المتعلقة باسترداد الأموال — fraudsters pose as recovery agents and demand upfront fees. Never share a seed phrase or pay before independently verifying the provider
  • الإعلانات المزيفة وعمليات التوزيع المجاني — إعلانات جوجل ووسائل التواصل الاجتماعي وعروض «الرموز المجانية» التي تؤدي إلى استنزاف رصيد المحفظة
  • عمليات الاحتيال التي تعتمد على الذكاء الاصطناعي — تقنية «ديب فايك»، والتصيد الاحتيالي الآلي، والمواقع التي يُنشئها الذكاء الاصطناعي، مما يجعل الكشف عن عمليات الاحتيال أكثر صعوبة
كيف يمكنني حماية نفسي في المستقبل؟
  • استخدم محفظة مادية (ليدجر، تريزور). لا تقم أبدًا بتخزين مبالغ كبيرة في محافظ المتصفح
  • إضافة المواقع الرسمية إلى قائمة المفضلة — لا تنقر أبدًا على الروابط الواردة في رسائل البريد الإلكتروني أو الرسائل المباشرة أو الإعلانات
  • اقرأ كل موافقة — التحقق من الأذونات قبل التوقيع. رفض الموافقات غير المحدودة
  • التحقق من النطاقات — التحقق من PhishDestroy قبل التفاعل. تحقق من HTTPS، والتهجئة، وعمر النطاق
  • "أمر جيد لدرجة يصعب تصديقها" = عملية احتيال — عوائد مضمونة، وتأييد المشاهير، ومواعيد نهائية ملحة
تضمين هذا التقريرRead-only HTML widget
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/atgoption.com"
  title="PhishDestroy threat report for atgoption.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

رسالة شكر صادقة جداً

منشئ مسودة ساخرة

المستلم
سياق الرسوم

مسودة ساخرة. أرقام الرسوم تقديرية، ولا ندّعي نسبتها بدقة إلى هذا النطاق.