الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 4. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

buyflashusdt[.]store

“Home - BUY FLASH USDT”

حكم التهديد حرجة 85/100 درجة الأدلة
التوفر المحتوى غير متوفر لم يكن المحتوى متاحًا في الملاحظة الأخيرة
اكتشافات VirusTotal: 4/93 انتحال العلامة التجارية: Across
24/01/2026 Across
ملخص التقرير

buyflashusdt.store — المحتوى غير متوفر. انتحال العلامة التجارية: Across; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 4/93 (ADMINUSLabs, Google Safebrowsing, Lionic, SOCRadar); Google Safe Browsing flagged; PhishDestroy score 85/100. مسجّل النطاق: Go Daddy.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
6129762D
الدرجة
85/100

The domain buyflashusdt.store was registered on 21 February 2026 through Go Daddy, LLC and resolves to the IP address 92.113.19.153, which belongs to Hostinger International Limited (AS47583) in Germany. No SSL certificate is presented, indicating that the site operates without HTTPS. Nameservers ns31.domaincontrol.com and ns32.domaincontrol.com are authoritative for the domain. The HTTP response yields the page title "Home - BUY FLASH USDT" and the campaign is classified as brand impersonation targeting the Across brand.

Google Safe Browsing flags the site for social engineering, and the domain appears on one security blocklist, specifically PhishDestroy. VirusTotal analysis shows four of ninety‑three scanners marking the domain as malicious. Reputation services assign low scores—Scamadviser 21/100 and Gridinsoft 3/100—reflecting poor trustworthiness. The site is currently offline, yet the underlying hosting infrastructure and IP range remain active.

The lack of TLS means any future reactivation would transmit data in clear text, facilitating credential capture. Analysts should monitor the IP 92.113.19.153 for reuse, enforce DNS‑level blocking of the domain and its nameservers, and incorporate the observed indicators (IP, ASN, page title, blocklist entry, and low trust scores) into detection and response rules. Additional investigation is required to determine whether other phishing kits or credential‑harvesting endpoints were hosted, as the content has not been captured. Defenders are advised to update web‑filtering and email‑security policies with these indicators and remain vigilant for new registrations that reuse the same registrar or hosting environment.

VirusTotal
VirusTotal
4 det.
Gridinsoft
3/100
ScamAdviser
Scamadviser
21/100
الحالة المرصودة
المحتوى غير متوفر
PhishDestroy
قائمة الإتلاف
مُدرج
نطاق تغطية البيانات VirusTotal 4 / 93 URLQuery تم تخزين التقرير - الحكم التفصيلي معلق PhishStats لم يتم التحقق منها OTX no community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict اكتمل التحليل حجب عناوين DNS لم يتم التحقق منها TLS لا توجد بيانات للشهادة WHOIS not parsed لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها Gridinsoft 3/100 Scamadviser 21/100
مؤشرات الأمان
SA Scamadviser Warnings 21/100
The website's owner is hiding his identity on WHOIS using a paid service This website does not have many visitors We detected cryptocurrency services which can be high risk This website has only been registered recently.
According to the SSL check the certificate is valid DNSFilter considers this website safe
GS Gridinsoft Analysis 3 / 100
Hosting SSL Certificate Cryptocurrency Trading - Risk Wordpress Platform Multilanguage Young Domain Low Scamadviser Score

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
13/14

حالة قوائم الحظر العامة

لقطة محفوظة

عنوان الصفحة
Home - BUY FLASH USDT
Impersonates
Across Binance Ethereum Gmail Revolut Scroll Telegram Trust Wallet +1

معلومات النطاق

النطاق
URLScan Verdict اكتمل التحليل score 0 report ↗
Google Safe Browsing تم وضع علامة عليها Social engineering checked 25/02/2026
الخادم / ASN LiteSpeed · AS47583 AS-HOSTINGER Hostinger International Limited, CY
سمعة عنوان IP abuse score 0/100 0 reports checked 16/06/2026
مسجّل النطاق Go Daddy US(US)
جهة الإبلاغ عن إساءة الاستخدامreport@abuseradar.com, abuse@godaddy.com
البحث في قاعدة بيانات WHOISICANN RDAP لـ buyflashusdt.store →
عنوان IP 92.113.19.153 DE
الموقع الجغرافيDE Frankfurt am Main, DE
الشبكةAS47583 · Hostinger International Limited
التسجيلExpires 28/03/2026
الوقت حتى أول تعذّر للوصول 105 days
ما الذي نحتسبه الوقت المنقضي من أول تقرير عن إساءة الاستخدام المخزن إلى الملاحظة الأولى بأن المحتوى غير متوفر. هذا لا يحدد السبب.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف24/01/2026
DOM Analysisanalyzed 23/04/2026score 10/1009 brand signals
IoC Extractionscanned 02/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttps://buyflashusdt.store/
خوادم الأسماءns31.domaincontrol.comns32.domaincontrol.com
TLS Observationscanned 15/03/2026
ICANN OVERSIGHT

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

4 / قام موردو الأمان 93 بوضع علامة على هذا المجال
View on VT
Last analyzed
ADMINUSLabs
Google Safebrowsing
Lionic
SOCRadar

الأدلة والتقارير الخارجية

نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/buyflashusdt.store"
  title="PhishDestroy threat report for buyflashusdt.store"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

رسالة شكر صادقة جداً

منشئ مسودة ساخرة

المستلم
سياق الرسوم

مسودة ساخرة. أرقام الرسوم تقديرية، ولا ندّعي نسبتها بدقة إلى هذا النطاق.