dokwallet[.]app
فحص التصيد والأمان للنطاق dokwallet.app
“Dok Wallet”
dokwallet.app — آخر نشاط معروف (HTTP 302). نوع الاحتيال: Crypto Scam. ملخص الأدلة: VT 15/91 (ADMINUSLabs, alphaMountain.ai, AlphaSOC, BitDefender, Chong Lua Dao); URLQuery 7 alerts; URLScan no malicious verdict; GSB no flag; BL 0; PD 100/100. مسجّل النطاق: GoDaddy.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy first observed dokwallet.app on Feb 26, 2026. Positive findings were recorded by VirusTotal and URLQuery. Evidence score: 100/100.
VirusTotal recorded 15 detections among 91 engines: ADMINUSLabs, alphaMountain.ai, AlphaSOC, BitDefender, Chong Lua Dao, CyRadar, ESET, Forcepoint ThreatSeeker on Jul 26, 2026 at 03:12 UTC. URLQuery recorded 7 threat-system alerts on Apr 5, 2026 at 01:51 UTC. The external blocklist snapshot contained no matches on Aug 7, 2026 at 10:20 UTC. Google Safe Browsing returned no flag on Mar 2, 2026 at 20:57 UTC. URLScan completed without a malicious verdict on Mar 27, 2026 at 12:26 UTC.
HTTP 302 was recorded on Aug 7, 2026 at 10:12 UTC. Registration records list GoDaddy.com, LLC as the registrar and Feb 21, 2026 as the registration date. At collection time, the domain resolved to 52.222.214.55. Captured page title: “Dok Wallet”. PhishDestroy classified the observed content as Crypto Scam. DOM analysis completed on Jul 10, 2026 at 18:21 UTC; stored DOM score 70/100. IoC extraction completed on Jul 29, 2026 at 02:30 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators.
Stored full analysis18/06/2026
PhishDestroy has analyzed the domain dokwallet.app, which is a crypto drainer threat currently classified as elevated risk and has been taken offline. This domain impersonates a wallet platform to trick users into connecting their cryptocurrency wallets, thereby draining their assets. The site was registered through GoDaddy.com, LLC and was created on February 21, 2026, which is notably in the future, suggesting possible backdated registration or a data anomaly. It resolves to IP address 52.222.214.55 and uses an SSL certificate from Amazon RSA 2048 M02.
Security intelligence reveals that dokwallet.app has been flagged by 9 out of 95 VirusTotal vendors, indicating broad recognition as malicious. It appears on 1 security blocklist, and its page title was found as 'Dok Wallet'. The domain's trust score is low, and the risk level is elevated due to the specific crypto drainer threat. These technical indicators confirm that the site was designed to harvest sensitive wallet credentials and execute unauthorized transactions.
As of now, dokwallet.app is offline, which mitigates immediate danger, but users should remain vigilant. PhishDestroy recommends that individuals avoid interacting with this domain or any similar unsolicited wallet connection prompts. Never connect your wallet to unknown sites, and always verify URLs carefully. If you have already interacted with this domain, immediately move funds to a new, secure wallet and revoke any permissions granted to suspicious dApps. Stay informed and use security tools to block known phishing domains. The seed for this report is c3bbbe.
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Private YARA rules | www.dokwallet.app/_next/static/chunks/a33cae03-f0d10b9cfb0f17a1.js |
audit | Hunting_JS_WebAssembly |
| Private YARA rules | www.dokwallet.app/_next/static/chunks/68b159eb-4e432e192f4f097e.js |
audit | Hunting_JS_WebAssembly |
| Private YARA rules | www.dokwallet.app/_next/static/chunks/5012-4df3a500de36e59d.js |
audit | Hunting_JS_WebAssembly |
| Hagezi Threat Feed | www.dokwallet.app |
malicious | Sinkholed |
| DNS4EU | www.dokwallet.app |
malicious | Sinkholed |
| Hagezi Threat Feed | dokwallet.app |
malicious | Sinkholed |
| DNS4EU | dokwallet.app |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
حصلت ICANN على أموالها. أما المساءلة فلم تصل.
بالنسبة إلى نطاق gTLD هذا، يعمل المسجّل المذكور أعلاه بموجب عقد مع ICANN. وتحصّل ICANN رسوماً سنوية ومتغيرة ورسومًا قائمة على المعاملات مرتبطة بعمليات التسجيل والتجديد والنقل.
الاعتماد: جرت الاستفادة منه مالياً. المساءلة: يُرجى التحقق مرة أخرى لاحقاً.
ثم يبدأ السحر: تكتب ICANN البند RAA §3.18، ويتولى المسجّل التحقيق في إساءة الاستخدام داخل قاعدة عملائه، ويقدّم الضحايا الأدلة مجاناً، بينما تنتظر كل طبقة أن يتحرك طرف آخر. إذا كان ذلك يجعل الضحايا يشعرون بمزيد من الأمان، فممتاز—لقد أدّت الفاتورة مهمتها.
التقنيات · 8 identified
JavaScript runtime built on Chrome V8 engine for server-side development.
JavaScript library for building user interfaces with component-based architecture.
Cloud computing platform offering compute, storage, and networking services.
React framework for production with hybrid static and server rendering.
Amazon Web Services CDN for low-latency content delivery.
Module bundler for modern JavaScript applications.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of dokwallet.app · checked Mar 2, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
حول هذا التقرير: dokwallet.app
يقدم هذا التقرير أحدث الأدلة المخزنة المتاحة لـ PhishDestroy. يتم عرض الطوابع الزمنية للمصدر حيثما كان ذلك متاحًا؛ يمكن أن تتغير أحكام التوفر والبائعين بعد التجميع.
عرض الموقع الذي تم التقاطه عنوان الصفحة “Dok Wallet”.
اعتبارًا من 07/08/2026، كان لدى dokwallet.app اكتشافات من محركات الأمان 15.
إذا كنت تعتقد أن هذه القائمة غير دقيقة، تقديم استئناف. للتعرف على منهجيتنا، قم بزيارة صفحة الأسئلة الشائعة.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب