encryptedporfoliodocuments[.]replit[.]app
ملخص الأدلة
The domain encryptedporfoliodocuments.replit.app is currently classified as a credential phishing site and remains active as of the report date, July 22, 2026. Infrastructure analysis shows the domain resolves to the IPv4 address 34.117.33.233, which is allocated to Google LLC under ASN 396982 and geolocated in the United States. The hosting provider is Replit, as indicated by the registrar information. An SSL certificate issued by Google Trust Services (CN=WR3) is present, confirming that Transport Layer Security is employed, but the certificate does not mitigate the malicious intent.
HTTP response code 200 is returned, and the only observed page title is "Please wait," suggesting a possible redirect or loading stage. Detection engines on VirusTotal have flagged the domain, with 11 of 91 security vendors marking it as malicious. The independent Gridinsoft trust score is 0 out of 100, reinforcing the low trust assessment. The domain appears on a single external blocklist and is actively blocked by PhishDestroy, indicating that at least one threat‑intelligence feed is recognizing the operation.
No nameserver records were retrieved (NS_NOT_FOUND), which may hinder automated DNS‑based detection. Defenders should add the hostname and its resolved IP address to inbound and outbound filtering rules, enforce DNS sinkholing where possible, and monitor for any authentication attempts to corporate services originating from this endpoint. Continuous telemetry collection from web proxy and endpoint logs is advised to capture any attempted credential submissions. Given the confirmed vendor detections, low trust score, and active blocklist status, the domain should be treated as high‑risk and blocked across all security controls pending further investigation.
Data Coverage
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
Registration: replit.app
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain replit.app behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
الأدلة المؤرشفة
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of encryptedporfoliodocuments.replit.app · checked Jul 13, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب