الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 20. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

endearing-uodatemailbox[.]netlify[.]app

“Bell”

حكم التهديد حرجة 100/100 درجة الأدلة
التوفر المحتوى غير متوفر لم يكن المحتوى متاحًا في الملاحظة الأخيرة
اكتشافات VirusTotal: 20/94 URLQuery threat systems: 2 alerts انتحال العلامة التجارية: Bcebell
15/04/2026 Bcebell CDN
ملخص التقرير

endearing-uodatemailbox.netlify.app — المحتوى غير متوفر. انتحال العلامة التجارية: Bcebell; نوع الاحتيال: Credential Phishing. ملخص الأدلة: VirusTotal 20/94 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); URLQuery 2 alerts; URLScan malicious verdict; CF Radar malicious; PhishDestroy score 100/100. مسجّل النطاق: Netlify.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
6D3F1007
الدرجة
100/100

PhishDestroy identifies endearing-uodatemailbox.netlify.app as an active credential harvesting scam impersonating a mailbox update portal. The domain weaponizes Netlify’s free hosting and DigiCert SSL to appear legitimate, while its backend drains harvested credentials to a rogue collector. No specific brand is mimicked in the observed payload, indicating a generic but high-efficiency trap aimed at harvesting email and password combinations for follow-on attacks.

This domain was flagged by 8 out of 95 VirusTotal security vendors. It resolves to IP 35.157.26.135, is registered through Netlify, and uses a DigiCert-issued SSL certificate. While creation and Google Safe Browsing status are not provided in the dataset, third-party blocklists already show multiple detections. The combination of free-tier hosting, valid SSL, and early-stage detection gaps makes this campaign particularly persistent and evasive.

As of the latest scan, the domain remains active and is actively propagating via email spam and social engineering lures. Immediate user action includes blocking the domain at DNS and proxy levels, removing any associated email messages, and resetting compromised credentials. The elevated risk profile persists due to the domain’s legitimate hosting infrastructure and SSL certificate, which lowers user suspicion. Remediation requires coordinated takedown via Netlify abuse channels and ISP-level blocking to neutralize the threat.

VirusTotal
VirusTotal
20 det.
URLQuery
URLQuery
2 threat alerts
DNS Security
3/12
رادار CF
ضار
شهادة TLS
DigiCert Inc
Hosting
Netlify
العمر
4 mo
الحالة المرصودة
المحتوى غير متوفر
PhishDestroy
قائمة الإتلاف
مُدرج
نطاق تغطية البيانات VirusTotal 20 / 94 URLQuery 2 threat-system alerts PhishStats checked — no match recorded OTX no community references رادار CF provider verdict: malicious URLScan capture التقرير المخزن URLScan verdict malicious حجب عناوين DNS 3/12 TLS valid certificate, 338d WHOIS 4 mo old لقطة شاشة 3 captures · 3 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكات
DNS Provider Blocks 3 / 12
Controld Adblock Controld Family Controld Malware
Threat Detection Systems 2 alerts
Detection System Indicator Verdict Alert
Cloudflare DNS endearing-uodatemailbox.netlify.app malicious Sinkholed
OpenDNS endearing-uodatemailbox.netlify.app phishing Phishing Block
CF Cloudflare Radar Verdict ضار
Phishing Security threats Phishing
Free Hosting Detected Netlify
This domain is hosted on Netlify (free hosting platform). Free hosting platforms are commonly used for both legitimate testing/development and malicious purposes. Additional context is needed for a de

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
16/17

حالة قوائم الحظر العامة

لقطة محفوظة

معلومات النطاق

النطاق
URLScan Verdict ضار score 100 Phishing brand: Bcebell report ↗
الخادم / ASN Netlify · AS16509 Amazon.com, Inc.
IP Context Netlify shared edge origin IP hidden لا تُنسب سمعة Edge-IP إلى هذا المجال.
مزود المنصة Netlify US(US)
جهة الإبلاغ عن إساءة الاستخدامabuse@netlify.com
عنوان IP 35.157.26.135 CDN
الموقع الجغرافيDE Frankfurt am Main, DE
الشبكةAS16509 · AWS EC2 (eu-central-1)
يتم إخفاء عنوان IP الأصلي خلف وكيل CDN. تحتوي نتائج IP العكسي لعنوان الحافة على مستأجرين غير مرتبطين؛ يتطلب العثور على المصدر نظام أسماء النطاقات السلبي أو بيانات شفافية الشهادة.
الوقت حتى أول تعذّر للوصول 84 days
ما الذي نحتسبه الوقت المنقضي من أول تقرير عن إساءة الاستخدام المخزن إلى الملاحظة الأولى بأن المحتوى غير متوفر. هذا لا يحدد السبب.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف15/04/2026
IoC Extractionscanned 01/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://endearing-uodatemailbox.netlify.app/
TLS Fingerprint
TLS Observationvalid from 16/02/2026scanned 15/04/2026
TLS SAN Domainsnetlify.app
عنوان الصفحة
Bell
شهادة TLS
Valid transport encryption · صادرة عن DigiCert Inc · valid for 338 days
التقنيات · 2 identified
Netlify
PaaS CDN

Platform for deploying and hosting modern web applications.

HSTS
الأمن

HTTP Strict Transport Security — forces browsers to use HTTPS connections only.

Detected via رادار Cloudflare · Wappalyzer engine
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

20 / قام موردو الأمان 94 بوضع علامة على هذا المجال
View on VT
Last analyzed
ADMINUSLabs
Criminal IP
alphaMountain.ai
BitDefender
Chong Lua Dao
CyRadar
ESET
Emsisoft
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
كاسبرسكي
LevelBlue
Lionic
نتكرافت
OpenPhish
سوفوس
VIPRE
Webroot

الأدلة المؤرشفة

Wayback Machine Snapshot
لقطة تاريخية متاحة لمراجعة الأدلة
View Archive
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of endearing-uodatemailbox.netlify.app · checked Apr 15, 2026

100
Good
Performance
FCP
0.97s
First Contentful Paint
LCP
1.42s
Largest Contentful Paint
CLS
0.049
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
1.96s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

الأدلة والتقارير الخارجية

نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/endearing-uodatemailbox.netlify.app"
  title="PhishDestroy threat report for endearing-uodatemailbox.netlify.app"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>