الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 3. قوائم الحظر العامة التي تبلغ عن تطابق: 1. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

ayurshop[.]com

فحص التصيد والأمان للنطاق ayurshop.com

حكم التهديد عالية 67/100 درجة الأدلة
التوفر لم يتم التحقق منها لم يتم التحقق من إمكانية الوصول الحالية
إشارات الخطر
اكتشافات VirusTotal: 3/91 Spamhaus DBL: DBL_ABUSED_PHISH تطابقات القائمة السوداء المخزنة: 1 URLQuery threat systems: 1 alert انتحال العلامة التجارية: Facebook
3/91 VT URLQuery: 1 threat alerts OTX: 4 refs 09/08/2026 1 Blocklist Facebook 1 Report Sent SG SG
ملخص التقرير

ayurshop.com — لم يتم التحقق منها. انتحال العلامة التجارية: Facebook. ملخص الأدلة: VirusTotal 3/91 (alphaMountain.ai, Gridinsoft, SOCRadar); URLQuery 1 alert; URLScan capture; Spamhaus DBL_ABUSED_PHISH; 1 external blocklist match (OpenPhish); PhishDestroy score 67/100. مسجّل النطاق: PDR.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
مرتفع
المرجع
06EE17A1
الدرجة
67/100

PhishDestroy first observed ayurshop.com on Aug 9, 2026. Stored content metadata identifies Facebook as the apparent target. Page analysis recorded additional brand references to Fedex, LinkedIn, and YouTube. Current evidence score: 67/100 (high).

Positive findings are stored from 4 sources: VirusTotal, OpenPhish, Spamhaus DBL, and URLQuery. VirusTotal recorded 3 detections among 91 engines: alphaMountain.ai, Gridinsoft, SOCRadar on Aug 9, 2026 at 14:00 UTC. OpenPhish listed the hostname in the separate external-blocklist snapshot on Aug 9, 2026 at 14:20 UTC. Spamhaus DBL: DBL_ABUSED_PHISH on Aug 9, 2026 at 14:30 UTC. URLQuery recorded 1 threat-system alert on Aug 9, 2026 at 14:04 UTC. Non-positive and contextual checks: AlienVault OTX listed 4 community pulse references (not vendor detections) on Aug 9, 2026 at 15:35 UTC. Google Safe Browsing returned no flag on Aug 9, 2026 at 15:33 UTC. URLScan captured the page on Aug 9, 2026 at 14:03 UTC.

The collector marked the hostname reachable on Aug 9, 2026 at 14:03 UTC, but did not retain the HTTP response code. Registration records for the domain list PDR Ltd. d/b/a PublicDomainRegistry.com as the registrar and Nov 14, 2002 as the creation date. At collection time, the hostname resolved to 103.227.176.14 (AS204800 WHG Hosting Services Ltd). The recorded endpoint location is Singapore, SG. DOM analysis on Aug 9, 2026 at 14:20 UTC returned 0/100; the source detections above were recorded separately. The evidence archive retains 5 visual captures from PhishDestroy, URLScan, URLQuery, and Cloudflare Radar; no page title was retained, so the captures preserve the landing-page appearance. TLS metadata lists Let's Encrypt as the certificate issuer.

The content indicators and 4 positive source findings support the current Facebook impersonation and phishing classification. The target field identifies Facebook, but the record does not establish whether the page requested credentials, a seed phrase, or a wallet connection.

VirusTotal
VirusTotal
3 det.
URLQuery
URLQuery
1 threat alert
OTX references
شهادة TLS
Let's Encrypt
العمر
23.8 yr
الحالة المرصودة
لم يتم التحقق منها
PhishDestroy
قائمة الإتلاف
مُدرج
Reports Sent
1
نطاق تغطية البيانات VirusTotal 3 / 91 URLQuery 1 threat-system alert PhishStats لم يتم التحقق منها OTX 4 community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict التقييم غير متاح حجب عناوين DNS لم يتم التحقق منها TLS valid certificate, 86d WHOIS 289 mo old لقطة شاشة 5 captures · 4 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكات
Threat Detection Systems 1 alert
Detection System Indicator Verdict Alert
YARAhub by abuse.ch theexternalfiles.elevatedprude.shop/fedex2/css/funcs.js malware Detects file containing Telegram Bot API

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
13/14
Sent Report Recorded
Stored sent-report record for registrar PDR Ltd. d/b/a PublicDomainRegistry.com, hosting provider, 3 abuse contacts
abuse@a2hosting.comayurshop@gmail.comabuse-contact@publicdomainregistry.com
09/08/2026

حالة قوائم الحظر العامة

لقطة محفوظة

Impersonates
Facebook Fedex LinkedIn YouTube
شهادة TLS
Valid transport encryption · صادرة عن Let's Encrypt · valid for 86 days

معلومات النطاق

النطاق
الخادم / ASN AS204800 WHG Hosting Services Ltd
سمعة عنوان IP abuse score 1/100 1 report checked 09/08/2026
مسجّل النطاق PDR IN(IN)
عنوان IP 103.227.176.14 SG
الموقع الجغرافيSG Singapore, SG
الشبكةAS204800 · WHG Hosting Services Ltd
التسجيلتم إنشاؤه 14/11/2002 Expires 14/11/2026
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف09/08/2026
DOM Analysisanalyzed 09/08/2026score 0/1004 brand signals
Submitted URLhttp://ayurshop.com/.cahceter/indexw.html
خوادم الأسماءns1.supercp.comns2.supercp.comns3.supercp.comns4.supercp.com
Case ID
ICANN OVERSIGHT

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.
التقنيات · 4 identified
PHP
Programming languages

PHP is a general-purpose scripting language used for web development.

php.net ثقة 100٪
LiteSpeed
Web servers

LiteSpeed is a high-scalability web server.

litespeedtech.com ثقة 100٪
HSTS
الأمن

HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.

www.rfc-editor.org ثقة 100٪
HTTP/3
Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

httpwg.org ثقة 100٪
Detected via رادار Cloudflare · Wappalyzer engine
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

3 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed First positive detection
alphaMountain.ai
Gridinsoft
SOCRadar

الأدلة المؤرشفة

Wayback Machine Snapshot
لقطة تاريخية متاحة لمراجعة الأدلة
View Archive

الأدلة والتقارير الخارجية

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260809-CAF4A4 Recipient: abuse@a2hosting.com
Page title stored with report: 로그인
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 33.4 KB
نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/ayurshop.com"
  title="PhishDestroy threat report for ayurshop.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

رسالة شكر صادقة جداً

منشئ مسودة ساخرة

المستلم
سياق الرسوم

مسودة ساخرة. أرقام الرسوم تقديرية، ولا ندّعي نسبتها بدقة إلى هذا النطاق.