cozy-tartufo-66895a[.]netlify[.]app
“Site not found”
cozy-tartufo-66895a.netlify.app — المحتوى غير متوفر. انتحال العلامة التجارية: Facebook. ملخص الأدلة: VirusTotal 16/91 (Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLScan malicious verdict; PhishDestroy score 95/100. مسجّل النطاق: Netlify.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Analysis of the domain cozy-tartufo-66895a.netlify.app shows that it resolves to the IP address 35.157.26.135 and is hosted on Netlify’s infrastructure, as indicated by the registrar information. The domain was created on May 08, 2018, suggesting a long‑standing presence that may have been repurposed for malicious use. VirusTotal scans have recorded 16 detections out of 91 security‑vendor submissions, demonstrating that a notable minority of AV engines flag the site as malicious.
Additionally, the domain is listed on a security blocklist and has been actively blocked by the PhishDestroy service, reinforcing the perception of ongoing abuse. No public evidence of SSL certificate details, HTTP response codes, Safe Browsing status, or Open Threat Exchange (OTX) entries is currently available, indicating that those vectors have not been publicly disclosed or have not yet been captured by monitoring platforms. The lack of a known page title or brand targeting further limits attribution, but the combination of IP hosting, Netlify registration, detection counts, and blocklist presence is consistent with a credential‑harvesting operation.
Uncertainty remains regarding the exact phishing campaign content, the specific victim population, and whether the site currently serves active malicious payloads. Defenders should continue to block the domain at network perimeters, update URL filtering rules to include the host, and monitor Netlify‑hosted IP ranges for similar patterns. Threat‑intel teams are advised to corroborate the domain’s activity with endpoint logs, capture any network traffic to the IP address, and consider sharing any newly observed indicators with community blocklists to improve collective defenses.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
التقنيات · 2 identified
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com ثقة 100٪HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org ثقة 100٪تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of cozy-tartufo-66895a.netlify.app · checked Jul 29, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب