الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 18. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

comunicaciones[.]iceiy[.]com

“Iniciar sesión en tu cuenta Microsoft”

حكم التهديد حرجة 100/100 درجة الأدلة
التوفر مغطى بعباءة · يمكن الوصول إليه تمت ملاحظة إمكانية الوصول من خلال عمليات فحص إخفاء الهوية
اكتشافات VirusTotal: 18/91 Spamhaus DBL: DBL_PHISH انتحال العلامة التجارية: Microsoft آخر نشاط معروف
06/07/2026 Microsoft

اكتشاف محفوظ

تنبيه إخفاء المحتوى

نوع الإخفاء
content_divergence
درجة الإخفاء
3/6
العنوان المعروض للماسحDNS Resolution Error - Domain Not Found, Or Domain not added to hosting account
العنوان المعروض للزائرIniciar sesión en tu cuenta Microsoft

ملخص الأدلة

حرج
Evidence score
100/100

comunicaciones.iceiy.com is currently active and hosts a credential phishing page targeting Microsoft accounts, as indicated by the page title “Iniciar sesión en tu cuenta Microsoft”. The site resolves to IP 185.27.134.98, which belongs to AS34119 Wildcard UK Limited and is geolocated to the United Kingdom. The domain was registered on 2020-12-06 through Porkbun LLC and uses the nameservers ns1.byet.org through ns5.byet.org. TLS is provided by a ZeroSSL ECC DV certificate issued by ZeroSSL GmbH, confirming that HTTPS connections are encrypted but do not imply legitimacy. Infrastructure analysis shows the web server runs Nginx with OpenResty, and the page loads libraries from jsDelivr, jQuery, and Google Hosted Libraries. The domain appears on one security blocklist and is listed as blocked by PhishDestroy. VirusTotal reports 18 of 91 security vendors flag the domain as malicious. A Gridinsoft trust score of 0/100 further reinforces the malicious assessment. The threat is classified as brand impersonation, specifically a Microsoft credential phishing campaign. No additional malicious payloads or secondary infrastructure have been observed, leaving the extent of victim reach unknown. Defenders should block network traffic to 185.27.134.98 and to the domain comunicaciones.iceiy.com, monitor DNS queries for the associated BYET.org nameservers, and add the domain to email filtering rules that detect Microsoft‑related phishing subjects. Continuous monitoring of the IP reputation and periodic re‑scans on VirusTotal are recommended to capture any changes in detection coverage.

VirusTotal
VirusTotal
18 det.
رادار CF
ضار
شهادة TLS
ZeroSSL GmbH / ZeroSSL ECC DV SSL CA 2
العمر
5.7 yr
الحالة المرصودة
مغطى بعباءة · يمكن الوصول إليه HTTP 200
PhishDestroy
قائمة الإتلاف
مدرج

Data Coverage

VirusTotal 18 / 91 URLQuery لم يتم التحقق منها PhishStats لم يتم التحقق منها OTX no community references رادار CF provider verdict: malicious URLScan capture التقرير المخزن URLScan verdict malicious حجب عناوين DNS لم يتم التحقق منها TLS valid certificate, 33d WHOIS 69 mo old لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكات
CF Cloudflare Radar Verdict ضار
Phishing

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
11/13

تغطية قوائم الحظر

١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026

١٠ مصادر خارجية مراقبة لا تطابق

لقطة محفوظة

عنوان الصفحة
Iniciar sesión en tu cuenta Microsoft
شهادة TLS
Valid transport encryption · صادرة عن ZeroSSL GmbH / ZeroSSL ECC DV SSL CA 2 · valid for 33 days

معلومات النطاق

النطاق
URLScan Verdict ضار score 100 Phishing brand: Microsoft report ↗
الخادم / ASN openresty · AS34119 WILDCARD-AS Wildcard UK Limited, GB
سمعة عنوان IP IP abuse confidence 0/100 0 reports checked 05/08/2026
Registrar (base domain) Porkbun US(US)
جهة الإبلاغ عن إساءة الاستخدامabuse@porkbun.com, abuse@ifastnet.com
البحث في قاعدة بيانات WHOISICANN RDAP لـ iceiy.com →
عنوان IP 185.27.134.98 GB
الموقع الجغرافيGB London, GB
الشبكةAS34119 · Wildcard UK Limited
Registration (base domain)iceiy.com · تم إنشاؤه 06/12/2020 Expires 06/12/2026
Elapsed Since First Report 3h
ما الذي نحتسبه Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: مغطى بعباءة · يمكن الوصول إليه.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
حالة HTTP200
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
تاريخ أول اكتشاف06/07/2026
DOM Analysisanalyzed 06/07/2026DOM analysis score 100/100
Submitted URLhttp://comunicaciones.iceiy.com/
خوادم الأسماءns1.byet.orgns2.byet.orgns3.byet.orgns4.byet.orgns5.byet.org
بصمة TLS
رصد TLSصالح منذ 15/06/2026فُحص في 06/07/2026
الأسماء البديلة لموضوع TLSiceiy.com
ICANN OVERSIGHT Registration: iceiy.com

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For the registrable domain iceiy.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.

التقنيات

حُدّدت ٥ تقنيات عالية الثقة

Nginx OpenResty jsDelivr jQuery Google Hosted Libraries
Cloudflare Radar
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

18 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed Previous stored snapshot: 18 detections
ADMINUSLabs
BitDefender
Chong Lua Dao
CyRadar
Ermes
ESET
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
كاسبرسكي
Lionic
PrecisionSec
Seclookup
سوفوس
URLQuery
VIPRE
Webroot

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان

أدوات خارجية

HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/comunicaciones.iceiy.com"
  title="PhishDestroy threat report for comunicaciones.iceiy.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

رسالة شكر صادقة جداً

منشئ مسودة ساخرة

المستلم
سياق الرسوم

مسودة ساخرة. أرقام الرسوم تقديرية، ولا ندّعي نسبتها بدقة إلى هذا النطاق.