beunumaro[.]com
فحص التصيد والأمان للنطاق beunumaro.com
“NOVABIT - Cryptocurrency Exchange”
beunumaro.com — المحتوى غير متوفر (HTTP 502). ملخص الأدلة: VirusTotal 3/93 (Gridinsoft, Seclookup, SOCRadar); PhishDestroy score 65/100. مسجّل النطاق: Hello Internet.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Analysis of beunumaro.com indicates this domain was actively used for cryptocurrency exchange phishing as of July 24, 2026. The domain, registered on February 21, 2026, through Hello Internet Corp, resolved to IP address 104.21.31.216, hosted on Cloudflare's infrastructure (AS13335) in the United States. Infrastructure analysis reveals the use of Cloudflare nameservers (chuck.ns.cloudflare.com and karsyn.ns.cloudflare.com), a common tactic to obscure hosting details and evade takedowns. The site presented itself as 'NOVABIT - Cryptocurrency Exchange,' as evidenced by the captured page title, suggesting an intent to deceive users into believing it was a legitimate cryptocurrency trading platform.
No SSL certificate was detected, increasing the likelihood of interception of sensitive data transmitted to the site. The domain was flagged by three of 93 security vendors on VirusTotal, and it appeared on at least one security blocklist (PhishDestroy). Gridinsoft assigned a trust score of 0/100, further corroborating its malicious classification. As of the report date, the domain has been taken offline, though defenders should remain vigilant for potential reemergence under similar infrastructure or domain names.
The combination of a recent registration date, absence of SSL, low trust scores, and presence on blocklists strongly supports the classification of beunumaro.com as a phishing site targeting cryptocurrency users. Defenders are advised to monitor for related domains registered through the same registrar or utilizing Cloudflare's infrastructure, particularly those mimicking cryptocurrency exchange brands. While the exact phishing kit or payload is not confirmed, the page title provides clear evidence of the intended deception. No additional brand-specific indicators or scam categorization beyond the cryptocurrency exchange theme are available at this time.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
الأدلة والتقارير الخارجية
PD-20260124-745DED Recipient: abuse@hello.co هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب