bafybeih2enmhriyu34h5katuwmktbk34qrl4x5j2dje2irjyn36zy5jkpq[.]ipfs[.]dweb[.]link
“Delta Prime”
bafybeih2enmhriyu34h5katuwmktbk34qrl4x5j2dje2irjyn36zy5jkpq.ipfs.dweb.link — لم يتم التحقق منها. ملخص الأدلة: VirusTotal 12/91 (alphaMountain.ai, BitDefender, CRDF, CyRadar, Emsisoft); PhishDestroy score 88/100. مسجّل النطاق: CSC.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
The domain bafybeih2enmhriyu34h5katuwmktbk34qrl4x5j2dje2irjyn36zy5jkpq.ipfs.dweb.link is flagged as a high‑risk generic phishing infrastructure. Registration data shows it was created on 24 February 2017 through CSC Corporate Domains, Inc., and the authoritative nameservers are clarissa.ns.cloudflare.com and tate.ns.cloudflare.com, indicating Cloudflare as the DNS provider. Network analysis places the resolved address 209.94.90.3 in the United States under AS40680 (Protocol Labs), a common hosting environment for decentralized web services. The site serves HTTP status code 301 and utilizes HTTP/3, confirming modern protocol support.
TLS termination is provided by a Let’s Encrypt certificate (issuer E7), which validates the domain’s ability to present a valid SSL chain. VirusTotal scans report that 10 of 91 security vendors have flagged the domain, suggesting a non‑trivial detection consensus among malware analysis tools. The page title returned by the HTTP response is "Delta Prime," but no further content has been publicly catalogued.
The domain appears on one external blocklist, specifically PhishDestroy, reinforcing its classification as a phishing resource. Defenders should treat the domain as active and hostile: block the IP address 209.94.90.3 and the full hostname at perimeter and DNS filtering layers, monitor for any new resolution changes, and incorporate the domain into threat‑intel feeds. Ongoing observation is advised because the available intelligence does not disclose the exact payload or victim targeting methodology, leaving the full scope of the phishing campaign uncertain.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com ثقة 100٪HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org ثقة 100٪تحليل VirusTotal
الأدلة المؤرشفة
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب