الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 6. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

cainbaseprologin[.]onepage[.]website

“One page website for free – Online website builder”

حكم التهديد عالية 68/100 درجة الأدلة
التوفر مغطى بعباءة · يمكن الوصول إليه تمت ملاحظة إمكانية الوصول من خلال عمليات فحص إخفاء الهوية
اكتشافات VirusTotal: 6/91 انتحال العلامة التجارية: Facebook آخر نشاط معروف
14/12/2025 Facebook
ملخص التقرير

cainbaseprologin.onepage.website — مغطى بعباءة · يمكن الوصول إليه. انتحال العلامة التجارية: Facebook; نوع الاحتيال: Social Media Phishing. ملخص الأدلة: VirusTotal 6/91 (ChainPatrol, Chong Lua Dao, Fortinet, Gridinsoft, Seclookup); CF Radar malicious; cloaking observed; PhishDestroy score 68/100. مسجّل النطاق: Hosting Concepts.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
مرتفع
المرجع
9097E1BF
الدرجة
68/100

This domain is flagged as a high-risk brand impersonation targeting Facebook. Analysis of available evidence reveals several indicators consistent with phishing infrastructure. The domain resolves to IP address 136.144.226.23, hosted in the Netherlands by AS20857 Signet B.V., a provider often associated with low-reputation hosting. The HTTP response returns a 302 redirect status, which is commonly used in phishing campaigns to redirect victims to credential harvesting pages after an initial visit. The SSL certificate is issued by Sectigo Limited, a legitimate certificate authority, but the presence of a valid certificate does not reduce the threat posed by the domain itself.

The domain was registered on September 17, 2014 through Hosting Concepts B.V. (d/b/a Registrar.eu), and its nameservers are ns.compra.be, ns.compra.eu, ns.compra.nl, and ns.compra.uk. The page title displayed is "One page website for free – Online website builder", which is generic and does not match the impersonated brand, a technique often used to evade automated detection. The domain appears on one security blocklist (PhishDestroy) and is flagged by 7 out of 95 security vendors on VirusTotal, indicating moderate but meaningful detection across the security industry. The Gridinsoft trust score is 0/100, reinforcing the assessment of high risk. Technologies detected on the domain include Plesk, PHP, Bootstrap, Nginx, Sendgrid, Pingdom RUM, jQuery, and Google Analytics.

While some of these are benign content delivery or analytics tools, their presence does not rule out malicious use. The exact phishing kit or landing page content has not been analysed, and no specific URL paths or form submission targets have been observed. Defenders should block access to this domain at the network level, monitor for related subdomains or variations of the cainbaseprologin.onepage.website naming pattern, and ensure that Facebook users are aware of this impersonation campaign.

VirusTotal
VirusTotal
6 det.
رادار CF
ضار
شهادة TLS
منتهية الصلاحية أو غير متحقق منها -54d
العمر
12 yr
الحالة المرصودة
مغطى بعباءة · يمكن الوصول إليه
PhishDestroy
قائمة الإتلاف
مُدرج
نطاق تغطية البيانات VirusTotal 6 / 91 URLQuery لم يتم التحقق منها PhishStats لم يتم التحقق منها OTX no community references رادار CF provider verdict: malicious URLScan capture التقرير المخزن URLScan verdict اكتمل التحليل حجب عناوين DNS لم يتم التحقق منها TLS منتهية الصلاحية أو غير متحقق منها WHOIS 145 mo old لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكات
CF Cloudflare Radar Verdict ضار
Phishing DNS Tunneling Security threats Phishing Dns tunneling

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
12/14

حالة قوائم الحظر العامة

لقطة محفوظة

عنوان الصفحة
One page website for free – Online website builder
Impersonates
Facebook Google Instagram LinkedIn TikTok YouTube
شهادة TLS
منتهية الصلاحية أو غير متحقق منها · صادرة عن Sectigo Limited / Sectigo Public Server Authentication CA DV R36

معلومات النطاق

النطاق
URLScan Verdict اكتمل التحليل score 0 report ↗
الخادم / ASN nginx · AS20857 TRANSIP-AS Signet B.V., NL
سمعة عنوان IP abuse score 0/100 0 reports checked 16/08/2026
Registrar (base domain) Hosting Concepts CZ(CZ)
جهة الإبلاغ عن إساءة الاستخدامabuse@registrar.eu
البحث في قاعدة بيانات WHOISICANN RDAP لـ onepage.website →
عنوان IP 136.144.226.23 NL
الموقع الجغرافيNL Amsterdam, NL
الشبكةAS20857 · Signet B.V.
Registration (base domain)onepage.website · تم إنشاؤه 17/09/2014
Cloaking Cloaking Detected Content divergence · score 1/6
unavailable: raw=proxy_error; http=0; via=http_proxy; error=HTTPConnectionPool(host='191.101.174.252', port=6300): Max retries exceeded with url: http://cainbaseprologin.onepage.we
checked 29/08/2026
Elapsed Since First Report 93 days
ما الذي نحتسبه Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: مغطى بعباءة · يمكن الوصول إليه.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف14/12/2025
DOM Analysisanalyzed 11/03/2026score 10/1006 brand signals
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://cainbaseprologin.onepage.website/
خوادم الأسماءns.compra.bens.compra.euns.compra.nlns.compra.uk
TLS Fingerprint
TLS Observationvalid from 05/06/2025scanned 11/03/2026
TLS SAN Domainsonepage.website
Favicon Hash
ICANN OVERSIGHT Registration: onepage.website

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For the registrable domain onepage.website behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.
التقنيات · 8 identified
Plesk
PHP
Programming languages

Server-side scripting language designed for web development.

Bootstrap
UI frameworks

Popular CSS framework for responsive, mobile-first web development.

Nginx
Web servers Reverse proxies

High-performance HTTP server and reverse proxy, known for stability and low resource usage.

Sendgrid
P
Pingdom RUM
jQuery
JavaScript libraries

Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.

Google Analytics
Analytics

Web analytics service tracking website traffic and user behavior.

marketingplatform.google.com
Detected via رادار Cloudflare · Wappalyzer engine
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

6 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed Previous stored snapshot: 9 detections
ChainPatrol
Chong Lua Dao
Fortinet
Gridinsoft
Seclookup
سوفوس

الأدلة المؤرشفة

Wayback Machine Snapshot
لقطة تاريخية متاحة لمراجعة الأدلة
View Archive
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of cainbaseprologin.onepage.website · checked Mar 2, 2026

66
Needs Work
Performance
FCP
2.9s
First Contentful Paint
LCP
6.35s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
111ms
Total Blocking Time
SI
6.7s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

الأدلة والتقارير الخارجية

نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/cainbaseprologin.onepage.website"
  title="PhishDestroy threat report for cainbaseprologin.onepage.website"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

رسالة شكر صادقة جداً

منشئ مسودة ساخرة

المستلم
سياق الرسوم

مسودة ساخرة. أرقام الرسوم تقديرية، ولا ندّعي نسبتها بدقة إلى هذا النطاق.