MALICIOUS — CRITICAL
فحص التصيد والأمان للنطاق beast-auth.com
beast-auth[.]
The domain beast-auth.com was registered on May 8 2026 through Web Commerce Communications Limited dba WebNic.cc.
- VirusTotal
- 15/91
- Blocklists
- 2 · MetaMask, SEAL
- التوفر
- آخر نشاط معروف · HTTP 301
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
beast-auth.com — آخر نشاط معروف (HTTP 301). انتحال العلامة التجارية: Mrbeast; نوع الاحتيال: Fake Airdrop. ملخص الأدلة: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); Google Safe Browsing flagged; Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 100/100. مسجّل النطاق: Web Commerce Communica….
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
The domain beast-auth.com was registered on May 8 2026 through Web Commerce Communications Limited dba WebNic.cc. It is actively serving a web page whose title reads “MrBeast | 1000 Creators”, a clear attempt to mimic the well‑known MrBeast brand and lure victims with a purported giveaway. Infrastructure analysis shows the zone is delegated to the authoritative nameservers cody.ns.cloudflare.com and raegan.ns.cloudflare.com. DNS resolution returns the address 172.67.184.14, an IP hosted by a content‑delivery network located in Canada. The site presents a TLS certificate issued by a free certificate authority and returns HTTP 526, indicating an SSL handshake issue with the origin server. Multiple threat indicators corroborate malicious intent. The domain appears on three security blocklists and is explicitly blocked by PhishDestroy, MetaMask, and SEAL. Google Safe Browsing flags it for SOCIAL_ENGINEERING, and VirusTotal records seven out of ninety‑five scanners marking the domain as malicious. AlienVault OTX references the domain in one pulse, and the Gridinsoft trust score is 0 / 100. The combination of brand impersonation and a fake‑giveaway narrative aligns with the reported scam type. Given the high‑risk rating and active status, defenders should treat beast‑auth.com as a confirmed fake‑giveaway impersonation targeting followers of MrBeast. Recommended controls include adding the domain to blocklists, enforcing URL filtering, monitoring TLS certificate changes, and educating end‑users about unsolicited giveaway links that reference the MrBeast brand.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
نطاق تغطية البيانات12 recorded checks
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.