الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 10. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

bonusstorm[.]info

“bonusstorm.info”

حكم التهديد حرجة 80/100 درجة الأدلة
التوفر المحتوى غير متوفر لم يكن المحتوى متاحًا في الملاحظة الأخيرة
اكتشافات VirusTotal: 10/91 نوع الاحتيال: Fake Airdrop
26/02/2026

ملخص الأدلة

حرج
Evidence score
80/100

bonusstorm.info was registered on 21 February 2026 through Dynadot LLC and is delegated to the authoritative name servers ns1.dyna-ns.net and ns2.dyna-ns.net. The registration date places the domain well within the current calendar year, and no further WHOIS anomalies have been observed. The domain name itself is used in the page title, matching the host header returned by the web server.

Network analysis shows that the domain resolves to the IPv4 address 185.43.220.19. The address belongs to autonomous system 59939, operated by WIBO Baltic UAB and geolocated to the Netherlands. An HTTP request to the host returns a 200 OK status, and the TLS handshake is completed with a certificate issued by a publicly trusted certificate authority, confirming the presence of a valid HTTPS endpoint.

The page content is crafted to imitate a cryptocurrency “airdrop” promotion and solicits personal wallet credentials, fitting the classification of a fake‑airdrop phishing campaign. Automated scanning services have flagged the site once out of ninety‑five engines, and a single security blocklist includes the domain. Independent reputation scoring reports a trust score of zero out of one hundred, reinforcing the high‑risk assessment.

While the current infrastructure appears static, the operator could relocate the site or modify the landing page without notice. Defensive teams should therefore enforce DNS‑level blocking of bonusstorm.info, add the IP address 185.43.220.19 to network deny lists, and monitor for outbound connections to the host. End‑user awareness messages should warn that unsolicited airdrop offers are untrusted, and any credential submission to this domain should be treated as compromised.

VirusTotal
VirusTotal
10 det.
شهادة TLS
Let's Encrypt / YR1
العمر
6 mo
الحالة المرصودة
المحتوى غير متوفر HTTP 502
PhishDestroy
قائمة الإتلاف
مدرج

Data Coverage

VirusTotal 10 / 91 URLQuery لم يتم التحقق منها PhishStats لم يتم التحقق منها OTX no community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict اكتمل التحليل حجب عناوين DNS لم يتم التحقق منها TLS valid certificate, 41d WHOIS 6 mo old لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
11/12

تغطية قوائم الحظر

١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026

١٠ مصادر خارجية مراقبة لا تطابق

المخطط الزمني للاكتشاف

  1. حالة النطاق

    يمكن الوصول إليه ← يتعذر الوصول إليه

لقطة محفوظة

عنوان الصفحة
bonusstorm.info
شهادة TLS
Valid transport encryption · صادرة عن Let's Encrypt / YR1 · valid for 41 days

معلومات النطاق

النطاق
URLScan Verdict اكتمل التحليل score 0 report ↗
الخادم / ASN Apache · AS59939 WIBO-AS WIBO Baltic UAB, LT
سمعة عنوان IP IP abuse confidence 0/100 1 report checked 15/07/2026
مسجّل النطاق Dynadot US(US)
جهة الإبلاغ عن إساءة الاستخدامabuse@dynadot.com
البحث في قاعدة بيانات WHOISICANN RDAP لـ bonusstorm.info →
عنوان IP 185.43.220.19 NL
الموقع الجغرافيNL Dronten, NL
الشبكةAS59939 · WIBO Baltic UAB
التسجيلتم إنشاؤه 21/02/2026 (171d)
حالة HTTP502 Error
الوقت حتى أول تعذّر للوصول 160 days
ما الذي نحتسبه الوقت المنقضي من أول تقرير عن إساءة الاستخدام المخزن إلى الملاحظة الأولى بأن المحتوى غير متوفر. هذا لا يحدد السبب.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
تاريخ أول اكتشاف26/02/2026
DOM Analysisanalyzed 09/07/2026DOM analysis score 71/100
خوادم الأسماءns2.dyna-ns.net
بصمة TLS
رصد TLSصالح منذ 24/06/2026فُحص في 09/07/2026
الأسماء البديلة لموضوع TLSassetclove.comattcentral.comavocat-alger.comawjolfmmis.comblyblyb-lin.combuct.it.combudapestdoctors.combudiwanita.orgbuffetly.comcantonchineserestaurant.comcareerkitalent.comchango-cok.comcheckmykids.comchickadeeclean.comloyalaistack.com+29
ICANN OVERSIGHT

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

10 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed Previous stored snapshot: 1 detection
alphaMountain.ai
BitDefender
CRDF
CyRadar
Forcepoint ThreatSeeker
G-Data
Gridinsoft
كاسبرسكي
SOCRadar
سوفوس

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان

أدوات خارجية

HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/bonusstorm.info"
  title="PhishDestroy threat report for bonusstorm.info"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

رسالة شكر صادقة جداً

منشئ مسودة ساخرة

المستلم
سياق الرسوم

مسودة ساخرة. أرقام الرسوم تقديرية، ولا ندّعي نسبتها بدقة إلى هذا النطاق.