cafeview-nhn[.]com
“네이버 : 로그인”
ملخص الأدلة
The domain cafeview-nhn.com has been identified as infrastructure supporting credential theft operations targeting Naver users. Analysis of the page title, "네이버 : 로그인," confirms impersonation of the legitimate Korean portal to harvest login credentials. The domain is currently offline, though prior activity indicates a focused campaign against Korean-speaking users. Infrastructure analysis reveals the domain was registered on April 08, 2026, through Name.com, Inc., and resolved to the IP address 34.111.179.208. Security vendors have flagged this domain as malicious, with 22 of 95 VirusTotal engines detecting it. The domain appears on four security blocklists, including PhishDestroy, PhishingArmy, OISD, and Maltrail. A Let's Encrypt SSL certificate was deployed, likely to lend superficial legitimacy to the phishing page. Trust scoring from independent sources assigns a risk rating of 0 out of 100, reinforcing the high-confidence assessment of malicious intent. Given the domain's current offline status, immediate threat exposure is reduced. However, the infrastructure may resurface under a different domain or IP. Organizations and users are advised to monitor for similar impersonation attempts targeting Naver or other regional platforms. Network-level blocking of the resolved IP (34.111.179.208) and domain-based filtering for newly registered lookalike domains are recommended. End-users should verify URLs before entering credentials and enable multi-factor authentication where available to mitigate credential theft risks.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
المخطط الزمني للاكتشاف
-
VirusTotal
13 ← 22
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of cafeview-nhn.com · checked Jun 26, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب