drz62[.]vip
ملخص الأدلة
Analysis on July 24, 2026 indicates that the domain drz62.vip is presently offline but exhibits several indicators of malicious activity consistent with a generic phishing operation. The domain was registered on December 12, 2024 through NiceNIC International Group Co., Limited and is hosted on Cloudflare infrastructure (AS13335) with the IP address 104.21.84.86 located in the United States. DNS resolution points to Cloudflare nameservers dayana.ns.cloudflare.com and eric.ns.cloudflare.com. No TLS certificate is presented, leaving the site unencrypted.
The page title returned during the brief availability period was "Just a moment…", which provides no functional information about the content. Threat intelligence platforms have flagged the domain: PhishDestroy lists it as blocked, and VirusTotal records three positive detections out of ninety‑five scanned engines. Gridinsoft assigns a trust score of 0 out of 100, and the domain appears on a single security blocklist. The absence of an SSL certificate, the low trust score, and the detection count collectively suggest a high likelihood of phishing intent, though the specific payload or targeted brand remains unconfirmed because no further page analysis is available.
Defenders should continue to block the domain at perimeter firewalls and DNS filters, monitor for any re‑appearance, and consider adding the associated IP address to blocklists. Ongoing observation of the hosting provider and registrar may reveal future registrations employing the same infrastructure. Until the site is definitively taken down, precautionary measures such as user education about unexpected "Just a moment…" redirects are advisable.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026
المخطط الزمني للاكتشاف
-
Cloudflare Radar
تم حفظ فحص Cloudflare Radar · فتح الفحص
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
الاستخبارات الجنائية الرقمية
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب