الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 16. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

demo[.]zpejy[.]app

“TikTok”

حكم التهديد حرجة 95/100 درجة الأدلة
التوفر لم يتم التحقق منها لم يتم التحقق من إمكانية الوصول الحالية
اكتشافات VirusTotal: 16/93 انتحال العلامة التجارية: TikTok
29/12/2025 TikTok
ملخص التقرير

demo.zpejy.app — لم يتم التحقق منها. انتحال العلامة التجارية: TikTok; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 16/93 (alphaMountain.ai, BitDefender, CRDF, CyRadar, ESET); PhishDestroy score 95/100. مسجّل النطاق: Dynadot.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
9C32B4CE
الدرجة
95/100

The domain demo.zpejy.app is currently flagged as a brand‑impersonation site targeting TikTok. Registration data shows the domain was created on August 10, 2025 through Dynadot LLC, and it resolves to the IPv4 address 38.46.13.34, which is assigned to an Asian network (AS9294 GNET INC.) located in Hong Kong. DNS resolution uses the authoritative name servers ns1.dnsip.com and ns2.dnsip.com. No TLS certificate is presented for the host, indicating the site operates without HTTPS protection. The page title returned by the server is "TikTok", matching the declared brand target and confirming the intent to masquerade as the official service.

Infrastructure analysis reveals a trust score of 0 out of 100 from Gridinsoft, suggesting the host is considered highly suspicious. VirusTotal scans have returned 16 positive detections out of 93 antivirus engines, reinforcing the malicious classification. The domain appears on a single public security blocklist and has been explicitly blocked by the PhishDestroy service, which is consistent with its offline status at the time of this assessment. No additional evidence such as content screenshots or HTTP response codes is available, so the exact user‑facing payload remains unknown.

Given the convergence of registrar, IP‑geolocation, low trust score, lack of encryption, and multiple vendor detections, defenders should treat demo.zpejy.app as a high‑confidence malicious indicator. Recommended actions include adding the domain to network and endpoint blocklists, monitoring DNS queries for the associated name servers, and enforcing TLS inspection policies that would have detected the absence of a valid certificate. Continuous re‑evaluation is advised in case the site becomes active again or additional indicators emerge.

VirusTotal
VirusTotal
16 det.
العمر
1 yr
الحالة المرصودة
لم يتم التحقق منها
PhishDestroy
قائمة الإتلاف
مُدرج
نطاق تغطية البيانات VirusTotal 16 / 93 URLQuery تم تخزين التقرير - الحكم التفصيلي معلق PhishStats checked — no match recorded OTX no community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict اكتمل التحليل حجب عناوين DNS لم يتم التحقق منها TLS لا توجد بيانات للشهادة WHOIS 12 mo old لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
14/16

حالة قوائم الحظر العامة

لقطة محفوظة

عنوان الصفحة
TikTok
Impersonates
TikTok

معلومات النطاق

النطاق
URLScan Verdict اكتمل التحليل score 0 report ↗
الخادم / ASN nginx · AS9294 GNETINC-AS-AP GNET INC., US
سمعة عنوان IP abuse score 0/100 0 reports checked 27/07/2026
Registrar (base domain) Dynadot US(US)
جهة الإبلاغ عن إساءة الاستخدامabuse@cogentco.com, abuse@dynadot.com
البحث في قاعدة بيانات WHOISICANN RDAP لـ zpejy.app →
عنوان IP 38.46.13.34 HK
الموقع الجغرافيHK Hong Kong, HK
الشبكةAS9294 · GNET INC.
Registration (base domain)zpejy.app · تم إنشاؤه 10/08/2025 Expires 10/08/2026
Elapsed Since First Report 131 days
ما الذي نحتسبه Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: لم يتم التحقق منها.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف29/12/2025
DOM Analysisanalyzed 23/04/2026score 88/1001 brand signal
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://demo.zpejy.app/
خوادم الأسماءns1.dnsip.comns2.dnsip.com
TLS Fingerprint
TLS Observationvalid from 17/04/2026scanned 10/08/2026
TLS SAN Domains84500.topjinrongfenqi.comjrfqa.topjrfqb.topjrfqc.topwww.84500.topwww.jinrongfenqi.comwww.jrfqa.topwww.jrfqb.topwww.jrfqc.top
ICANN OVERSIGHT Registration: zpejy.app

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For the registrable domain zpejy.app behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

16 / قام موردو الأمان 93 بوضع علامة على هذا المجال
View on VT
Last analyzed
alphaMountain.ai
BitDefender
CRDF
CyRadar
ESET
Fortinet
G-Data
Gridinsoft
كاسبرسكي
Lionic
نتكرافت
PhishLabs
SOCRadar
سوفوس
Trustwave
VIPRE

الأدلة المؤرشفة

Wayback Machine Snapshot
لقطة تاريخية متاحة لمراجعة الأدلة
View Archive

الأدلة والتقارير الخارجية

نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/demo.zpejy.app"
  title="PhishDestroy threat report for demo.zpejy.app"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

رسالة شكر صادقة جداً

منشئ مسودة ساخرة

المستلم
سياق الرسوم

مسودة ساخرة. أرقام الرسوم تقديرية، ولا ندّعي نسبتها بدقة إلى هذا النطاق.