الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 12. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

fennia[.]listanascita[.]shop

“Fennia”

حكم التهديد حرجة 86/100 درجة الأدلة
التوفر لم يتم التحقق منها لم يتم التحقق من إمكانية الوصول الحالية
اكتشافات VirusTotal: 12/91 انتحال العلامة التجارية: Google
19/10/2025 Google CDN
ملخص التقرير

fennia.listanascita.shop — لم يتم التحقق منها. انتحال العلامة التجارية: Google; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 12/91 (ADMINUSLabs, BitDefender, Chong Lua Dao, CRDF, CyRadar); PhishDestroy score 86/100. مسجّل النطاق: Tucows.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
72C2BB02
الدرجة
86/100

Analysis indicates that the domain fennia.listanascita.shop has been taken offline but remains listed on multiple security blocklists. The site was registered on 23 April 2025 through Tucows Domains Inc. and resolves to IP address 62.60.226.175, which is assigned to AS214351 FEMO IT SOLUTIONS LIMITED in Germany. The domain uses Cloudflare’s authoritative nameservers jake.ns.cloudflare.com and ruth.ns.cloudflare.com, a common choice for fast‑flux or short‑lived malicious infrastructure. No TLS certificate is present, meaning any traffic would be unencrypted HTTP.

VirusTotal reports that two of ninety‑five scanning engines flagged the domain, and the domain appears on one public blocklist, confirming its malicious reputation. Gridinsoft assigns a trust score of 0 out of 100, and the page title returned by the server is “Fennia”, which does not correspond to the advertised brand. The intelligence tags the campaign as a Google brand impersonation, consistent with the “brand impersonation” scam type. The domain has been blocked by the PhishDestroy service, further indicating that it was used for phishing‑related activity.

Because the site is currently offline, active probing is not possible, but the infrastructure details—German IP, Cloudflare nameservers, lack of SSL, and low trust score—are typical of short‑lived impersonation campaigns. Defenders should continue to block the IP address and domain at perimeter defenses, add the domain to internal phishing blocklists, and monitor the associated IP range for re‑use. Periodic re‑resolution of the domain is advised in case the actors reactivate the site, and any future HTTP responses should be inspected for credential‑stealing forms or redirects to known Google login endpoints.

VirusTotal
VirusTotal
12 det.
العمر
1.3 yr
الحالة المرصودة
لم يتم التحقق منها
PhishDestroy
قائمة الإتلاف
مُدرج
نطاق تغطية البيانات VirusTotal 12 / 91 URLQuery تم تخزين التقرير - الحكم التفصيلي معلق PhishStats لم يتم التحقق منها OTX no community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict اكتمل التحليل حجب عناوين DNS لم يتم التحقق منها TLS لا توجد بيانات للشهادة WHOIS 16 mo old لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
11/13

حالة قوائم الحظر العامة

لقطة محفوظة

عنوان الصفحة
Fennia
Impersonates
Gmail

معلومات النطاق

النطاق
URLScan Verdict اكتمل التحليل score 0 report ↗
الخادم / ASN nginx/1.28.0 · AS214351 FEMOIT FEMO IT SOLUTIONS LIMITED, GB
IP Context CDN shared edge origin IP hidden لا تُنسب سمعة Edge-IP إلى هذا المجال.
Registrar (base domain) Tucows CA(CA)
جهة الإبلاغ عن إساءة الاستخدامdomainabuse@tucows.com, abuse@as214351.com
البحث في قاعدة بيانات WHOISICANN RDAP لـ listanascita.shop →
عنوان IP 62.60.226.175 CDN
الموقع الجغرافيDE Frankfurt am Main, DE
الشبكةAS214351 · FEMO IT SOLUTIONS LIMITED
يتم إخفاء عنوان IP الأصلي خلف وكيل CDN. تحتوي نتائج IP العكسي لعنوان الحافة على مستأجرين غير مرتبطين؛ يتطلب العثور على المصدر نظام أسماء النطاقات السلبي أو بيانات شفافية الشهادة.
Registration (base domain)listanascita.shop · تم إنشاؤه 23/04/2025 Expires 23/04/2026
Elapsed Since First Report 205 days
ما الذي نحتسبه Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: لم يتم التحقق منها.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف19/10/2025
DOM Analysisanalyzed 23/04/2026score 10/1001 brand signal
IoC Extractionscanned 01/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttps://fennia.listanascita.shop/
خوادم الأسماءjake.ns.cloudflare.comruth.ns.cloudflare.com
TLS Observationscanned 12/03/2026
ICANN OVERSIGHT Registration: listanascita.shop

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For the registrable domain listanascita.shop behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

12 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed Previous stored snapshot: 2 detections
ADMINUSLabs
BitDefender
Chong Lua Dao
CRDF
CyRadar
ESET
Fortinet
G-Data
Gridinsoft
Lionic
SOCRadar
سوفوس

الأدلة والتقارير الخارجية

نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/fennia.listanascita.shop"
  title="PhishDestroy threat report for fennia.listanascita.shop"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

رسالة شكر صادقة جداً

منشئ مسودة ساخرة

المستلم
سياق الرسوم

مسودة ساخرة. أرقام الرسوم تقديرية، ولا ندّعي نسبتها بدقة إلى هذا النطاق.