bafkreih6ziryyz37frw2uf4bikvjrio7dmspmbqbhau6sgcs5cjrxdketa[.]ipfs[.]dweb[.]link
“Naver Sign in”
bafkreih6ziryyz37frw2uf4bikvjrio7dmspmbqbhau6sgcs5cjrxdketa.ipfs.dweb.link — لم يتم التحقق منها. انتحال العلامة التجارية: Genericemail; نوع الاحتيال: Credential Phishing. ملخص الأدلة: VirusTotal 20/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); URLQuery 6 alerts; URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. مسجّل النطاق: CSC.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain presents a credential theft threat by impersonating a legitimate Naver sign-in page. Users might be deceived into entering their credentials, potentially giving attackers access to their personal and sensitive information. Since it is related to credential theft, the domain targets users attempting to access their Naver accounts, increasing the risk of unauthorized access if successful.
Analysis shows that the domain was flagged by 18 out of 95 security vendors on VirusTotal. It was created on February 24, 2017, and is registered through CSC Corporate Domains, Inc. The domain resolves to the IP address 209.94.90.3, located in the US under Protocol Labs infrastructure. It is blocked by at least one known security blocklist, specifically PhishDestroy, indicating its recognition as a threat within the cybersecurity community. The SSL certificate issued by Let's Encrypt further suggests efforts to mimic secure and legitimate sites.
Users who may have interacted with this domain should immediately change their Naver account passwords and monitor their accounts for suspicious activity. It is also advisable to enable two-factor authentication if not already active. Additionally, users should inform their contacts and review any other accounts associated with the compromised credentials, ensuring they remain secure.
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | bafkreih6ziryyz37frw2uf4bikvjrio7dmspmbqbhau6sgcs5cjrxdketa.ipfs.inbrowser.link |
malicious | Sinkholed |
| OpenDNS | bafkreih6ziryyz37frw2uf4bikvjrio7dmspmbqbhau6sgcs5cjrxdketa.ipfs.inbrowser.link |
phishing | Phishing Block |
| DNS4EU | bafkreih6ziryyz37frw2uf4bikvjrio7dmspmbqbhau6sgcs5cjrxdketa.ipfs.inbrowser.link |
malicious | Sinkholed |
| Cloudflare DNS | bafkreih6ziryyz37frw2uf4bikvjrio7dmspmbqbhau6sgcs5cjrxdketa.ipfs.dweb.link |
malicious | Sinkholed |
| OpenDNS | bafkreih6ziryyz37frw2uf4bikvjrio7dmspmbqbhau6sgcs5cjrxdketa.ipfs.dweb.link |
phishing | Phishing Block |
| DNS4EU | bafkreih6ziryyz37frw2uf4bikvjrio7dmspmbqbhau6sgcs5cjrxdketa.ipfs.dweb.link |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 3 identified
IPFS is a peer-to-peer hypermedia protocol that provides a distributed hypermedia web.
ipfs.tech ثقة 100٪Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com ثقة 100٪HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org ثقة 100٪تحليل VirusTotal
الأدلة المؤرشفة
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب