futuresgfdew[.]com
فحص التصيد والأمان للنطاق futuresgfdew.com
“Futures”
futuresgfdew.com — المحتوى غير متوفر (HTTP 502). انتحال العلامة التجارية: Generic; نوع الاحتيال: Fake Exchange. ملخص الأدلة: VirusTotal 8/91 (alphaMountain.ai, ESET, Forcepoint ThreatSeeker, Gridinsoft); URLQuery 2 alerts; URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 90/100. مسجّل النطاق: GMO Internet.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain is flagged as a high-risk crypto drainer phishing site designed to compromise cryptocurrency wallets and drain funds. Analysis indicates it impersonates legitimate futures trading platforms, likely targeting users through deceptive login portals or wallet connection prompts. The infrastructure exhibits multiple red flags consistent with malicious financial fraud operations. Infrastructure analysis reveals the domain futuresgfdew.com was registered on March 04, 2026, through GMO Internet, Inc., a registrar frequently associated with phishing activity. It resolves to IP address 188.114.97.3, hosted on Cloudflare's network (AS13335) in the United States. The site uses a Let's Encrypt SSL certificate (serial number E7) and displays the page title 'Futures.' Security vendors on VirusTotal detect the domain at 8/95, while three major blocklists—PhishDestroy, MetaMask, and SEAL—actively block it. Despite these indicators, the domain remains operational and unmitigated. Users should immediately cease interaction with futuresgfdew.com and any associated links. If wallet connections were previously authorized, revoke access via wallet settings and transfer assets to a new secure wallet. Monitor accounts for unauthorized transactions and report the domain to relevant security teams or abuse contacts. Organizations should update blocklists to include this domain and its resolving IP to prevent further exposure. Given the high detection rate and active status, assume all interactions with this site pose a direct financial threat.
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | futuresgfdew.com |
malicious | Sinkholed |
| DNS4EU | futuresgfdew.com |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
الأدلة والتقارير الخارجية
PD-20260617-AE1CBA Recipient: abuse@internet.gmo هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب