الانتقال إلى تقرير الأمان
Checked 09/08/2026 Ref 824E63E9

MALICIOUS — CRITICAL

blackcatpayments[.]com

1 of 91 security engines flagged the domain; 2 public blocklists listed it (MetaMask, SEAL); the latest stored check returned HTTP 502.

88/100 evidence score · Critical
VirusTotal
1/91
Blocklists
2 · MetaMask, SEAL
التوفر
المحتوى غير متوفر · HTTP 502
Report / Add Evidence Appeal this listing
2026-07-14 09:57 UTCالمحتوى غير متوفر · HTTP 502

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 1. قوائم الحظر العامة التي تبلغ عن تطابق: 2. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
Jump to section
ملخص التقرير

blackcatpayments.com — المحتوى غير متوفر (HTTP 502). ملخص الأدلة: VirusTotal 1/91 (SOCRadar); URLQuery 1 alert; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 88/100. مسجّل النطاق: Hostinger.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

Evidence Digest

Ref 824E63E9

blackcatpayments.com is classified critical with an evidence score of 88/100. 1 of 91 security engines flagged the domain; 2 public blocklists listed it (MetaMask, SEAL). Registered 11 Jul 2026 via HOSTINGER operations, UAB, hosted on 188.114.96.3 (Cloudflare, Inc., CA). The latest stored check on 9 Aug 2026 returned HTTP 502 and includes a capture. 1 outgoing abuse report is recorded, most recently on 14 Jul 2026.

Stored generated summary (templated)cerebras · 14/07/2026

Retained for the record. This text repeats stored detection facts and is not presented as authored analysis.

Analysis of blackcatpayments.com shows it is an active generic phishing infrastructure observed on 14 July 2026. The domain resolves to IP address 188.114.96.3 and is served over TLS with a Google Trust Services / WE1 certificate, indicating a valid HTTPS endpoint. Registration records list Hostinger Operations, UAB as the registrar, with the domain creation date of 11 July 2026. DNS is delegated to Cloudflare name servers bailey.ns.cloudflare.com and jaxson.ns.cloudflare.com. The site has been scanned by 91 VirusTotal vendors without any current detections; however, the lack of detections does not confirm safety. The threat is currently classified as generic phishing and remains under investigation. Uncertainty remains regarding the specific content hosted on the site, as no page‑level analysis is available. Defenders should consider adding the domain and its associated IP to blocklists, monitor outbound connections for traffic to the IP, and continue periodic re‑scans to detect any future malicious payloads.

VirusTotal
VirusTotal
1 det.
URLQuery
URLQuery
1 threat alert
شهادة TLS
Google Trust Services / WE1
العمر
28d Very New!
الحالة المرصودة
المحتوى غير متوفر 502
PhishDestroy
قائمة الإتلاف
مُدرج
Reports Sent
1
نطاق تغطية البيانات12 recorded checks
VirusTotal 1 / 91 URLQuery 1 threat-system alert PhishStats لم يتم التحقق منها OTX no community references رادار CF no data URLScan capture التقرير المخزن URLScan verdict اكتمل التحليل حجب عناوين DNS لم يتم التحقق منها TLS valid certificate, 61d WHOIS 28d old لقطة شاشة 3 captures · 3 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكات
Threat Detection Systems 1 alert
Detection System Indicator Verdict Alert
Hagezi Threat Feed blackcatpayments.com malicious Sinkholed

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
12/12
Sent Report Recorded
Stored sent-report record for registrar HOSTINGER operations, UAB, hosting provider, 1 abuse contact
abuse-tracker@hostinger.com
14/07/2026

حالة قوائم الحظر العامة

لقطة محفوظة

شهادة TLS
Valid transport encryption · صادرة عن Google Trust Services / WE1 · valid for 61 days

معلومات النطاق

النطاق
URLScan Verdict اكتمل التحليل score 0 report ↗
الخادم / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden لا تُنسب سمعة Edge-IP إلى هذا المجال.
مسجّل النطاق Hostinger LT(LT)
جهة الإبلاغ عن إساءة الاستخدامabuse-tracker@hostinger.com
البحث في قاعدة بيانات WHOISICANN RDAP لـ blackcatpayments.com →
عنوان IP 188.114.96.3 CDN
الموقع الجغرافيCA Toronto, CA
الشبكةAS13335 · CloudFlare, Inc.
يتم إخفاء عنوان IP الأصلي خلف وكيل CDN. تحتوي نتائج IP العكسي لعنوان الحافة على مستأجرين غير مرتبطين؛ يتطلب العثور على المصدر نظام أسماء النطاقات السلبي أو بيانات شفافية الشهادة.
التسجيلتم إنشاؤه 11/07/2026 (28d · Very New!) Expires 11/07/2028
حالة HTTP502 Error
الوقت حتى أول تعذّر للوصول 24 days
ما الذي نحتسبه الوقت المنقضي من أول تقرير عن إساءة الاستخدام المخزن إلى الملاحظة الأولى بأن المحتوى غير متوفر. هذا لا يحدد السبب.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف14/07/2026
DOM Analysisanalyzed 14/07/2026score 88/100
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://blackcatpayments.com/
خوادم الأسماءbailey.ns.cloudflare.comjaxson.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 11/07/2026scanned 14/07/2026
Case ID
ICANN OVERSIGHT

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

1 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed First positive detection Previous stored snapshot: 0 detections
SOCRadar
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260714-20D390 Recipient: abuse-tracker@hostinger.com
Page title stored with report: blackcatpayments.com/
Blocklist hits included with submission: MetaMask, SEAL
نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك
تضمين هذا التقريرRead-only HTML widget
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/blackcatpayments.com"
  title="PhishDestroy threat report for blackcatpayments.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

رسالة شكر صادقة جداً

منشئ مسودة ساخرة

المستلم
سياق الرسوم

مسودة ساخرة. أرقام الرسوم تقديرية، ولا ندّعي نسبتها بدقة إلى هذا النطاق.