الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 15. قوائم الحظر العامة التي تبلغ عن تطابق: 1. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

events-meteora[.]xyz

“events-meteora.xyz | 504: Gateway time-out”

حكم التهديد حرجة 95/100 درجة الأدلة
التوفر المحتوى غير متوفر لم يكن المحتوى متاحًا في الملاحظة الأخيرة
اكتشافات VirusTotal: 15/94 تطابقات القائمة السوداء المخزنة: 1 URLQuery threat systems: 1 alert نوع الاحتيال: Crypto Drainer
14/03/2026 1 Report Sent CDN
ملخص التقرير

events-meteora.xyz — المحتوى غير متوفر. نوع الاحتيال: Crypto Drainer. ملخص الأدلة: VirusTotal 15/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); URLQuery 1 alert; Google Safe Browsing flagged; 1 external blocklist match (ScamSniffer); PhishDestroy score 95/100. مسجّل النطاق: Dynadot.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
31D8BCD4
الدرجة
95/100

The domain events-meteora.xyz is identified as a generic phishing site specializing in fraudulent event pages designed to harvest user credentials or distribute malicious payloads. Analysis indicates the domain is currently offline, displaying a 504 Gateway Time-out error, though prior activity suggests it was actively used for social engineering campaigns. No specific brand impersonation was confirmed, but the site's structure aligns with credential theft tactics. Infrastructure analysis reveals the domain was registered through Dynadot LLC on March 13, 2026, an unusually future-dated registration likely indicative of bulk domain abuse. It resolves to the IP address 172.67.215.93, a Cloudflare-hosted endpoint leveraging HTTP/3 protocols. Security vendors flagged the domain in 15 of 95 VirusTotal detections, with Google Safe Browsing categorizing it under SOCIAL_ENGINEERING. The domain appears on three independent security blocklists and was proactively blocked by multiple threat intelligence feeds, including PhishDestroy and ScamSniffer. The unique seed identifier for this campaign is 31d8bc. Current status confirms the domain is offline, though its infrastructure remains intact. Organizations are advised to block the domain and its associated IP (172.67.215.93) at the perimeter, update endpoint protection rules to include the domain hash, and monitor for related subdomains or future registrations under the same registrar. Users who accessed the site should reset credentials for any accounts entered and scan systems for unauthorized activity. Future monitoring of Dynadot-registered domains with similar naming patterns (meteora-themed) is recommended.

VirusTotal
VirusTotal
15 det.
URLQuery
URLQuery
1 threat alert
شهادة TLS
منتهية الصلاحية أو غير متحقق منها
العمر
5 mo
الحالة المرصودة
المحتوى غير متوفر
PhishDestroy
قائمة الإتلاف
مُدرج
Reports Sent
1
نطاق تغطية البيانات VirusTotal 15 / 94 URLQuery 1 threat-system alert PhishStats checked — no match recorded OTX no community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict اكتمل التحليل حجب عناوين DNS 14 تم الفحص — لا يوجد حظر TLS منتهية الصلاحية أو غير متحقق منها WHOIS 5 mo old لقطة شاشة 3 captures · 3 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكات
Threat Detection Systems 1 alert
Detection System Indicator Verdict Alert
DNS4EU aodefevrgdkhqltdnwgzbyjoywrlbntbhfwq.com malicious Sinkholed
SSL Certificate Invalid
SSL certificate is invalid or expired. Issuer:

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
14/14
Sent Report Recorded
Stored sent-report record for registrar Dynadot LLC, hosting provider, 1 abuse contact
abuse@dynadot.com
13/03/2026

حالة قوائم الحظر العامة

لقطة محفوظة

عنوان الصفحة
events-meteora.xyz | 504: Gateway time-out
شهادة TLS
منتهية الصلاحية أو غير متحقق منها · صادرة عن Google Trust Services / WE1

معلومات النطاق

النطاق
URLScan Verdict اكتمل التحليل score 0 report ↗
Google Safe Browsing تم وضع علامة عليها Social engineering checked 26/06/2026
الخادم / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden لا تُنسب سمعة Edge-IP إلى هذا المجال.
مسجّل النطاق Dynadot US(US)
جهة الإبلاغ عن إساءة الاستخدامabuse@dynadot.com
البحث في قاعدة بيانات WHOISICANN RDAP لـ events-meteora.xyz →
عنوان IP 172.67.215.93 CDN
الموقع الجغرافيUS San Francisco, US
الشبكةAS13335 · Cloudflare, Inc.
يتم إخفاء عنوان IP الأصلي خلف وكيل CDN. تحتوي نتائج IP العكسي لعنوان الحافة على مستأجرين غير مرتبطين؛ يتطلب العثور على المصدر نظام أسماء النطاقات السلبي أو بيانات شفافية الشهادة.
التسجيلتم إنشاؤه 13/03/2026 (158d)
الوقت حتى أول تعذّر للوصول 8h
ما الذي نحتسبه الوقت المنقضي من أول تقرير عن إساءة الاستخدام المخزن إلى الملاحظة الأولى بأن المحتوى غير متوفر. هذا لا يحدد السبب.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف14/03/2026
DOM Analysisanalyzed 29/07/2026score 90/100
IoC Extractionscanned 01/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttps://events-meteora.xyz/proposal/apr
خوادم الأسماءeleanor.ns.cloudflare.comjakub.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 24/01/2026scanned 15/03/2026
Case ID
ICANN OVERSIGHT

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.
التقنيات · 2 identified
Cloudflare
CDN

Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.

www.cloudflare.com
HTTP/3
Miscellaneous

Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.

Detected via رادار Cloudflare · Wappalyzer engine
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

15 / قام موردو الأمان 94 بوضع علامة على هذا المجال
View on VT
Last analyzed Previous stored snapshot: 2 detections
ADMINUSLabs
alphaMountain.ai
BitDefender
Chong Lua Dao
CRDF
CyRadar
ESET
Forcepoint ThreatSeeker
Fortinet
G-Data
Google Safebrowsing
Gridinsoft
Lionic
SOCRadar
سوفوس

الأدلة والتقارير الخارجية

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260313-09AF72 Recipient: abuse@dynadot.com
Page title stored with report: Home | Meteora
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 67.1 KB
نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/events-meteora.xyz"
  title="PhishDestroy threat report for events-meteora.xyz"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

رسالة شكر صادقة جداً

منشئ مسودة ساخرة

المستلم
سياق الرسوم

مسودة ساخرة. أرقام الرسوم تقديرية، ولا ندّعي نسبتها بدقة إلى هذا النطاق.