الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 12. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

giftcardmall[.]org

“dhsgs035's Digital Business Card powered by Slink”

حكم التهديد حرجة 86/100 درجة الأدلة
التوفر خطأ في الخادم آخر استجابة مخزنة كانت غير حاسمة
اكتشافات VirusTotal: 12/91 Spamhaus DBL: DBL_SPAM URLQuery threat systems: 3 alerts انتحال العلامة التجارية: Godaddy
26/02/2026 Godaddy CDN

ملخص الأدلة

حرج
Evidence score
86/100

This domain, giftcardmall.org, is flagged as a brand impersonation phishing site targeting GoDaddy, with elevated risk indicators confirmed by multiple security sources. Registered on February 21, 2026, the domain was hosted on Cloudflare infrastructure (IP 104.21.19.185, AS13335) and used nameservers ns7.alidns.com and ns8.alidns.com. Analysis of the SSL certificate reveals a WE1 classification, which is often associated with low-cost or automated certificate issuance, though not inherently malicious. The page title, 'dhsgs035's Digital Business Card powered by Slink,' does not align with typical GoDaddy branding or service pages, suggesting either misdirection or a generic front for malicious activity.

At the time of assessment, the domain was offline and blocked by PhishDestroy, with a presence on one security blocklist. VirusTotal detections from 11 of 93 security vendors further corroborate its malicious classification, though the specific payload or phishing kit remains unconfirmed. Defenders should treat this domain as compromised and prioritize blocking it at the DNS and network levels.

Given its association with Cloudflare and Alibaba nameservers, monitoring for re-emergence under similar infrastructure or certificate patterns is recommended. The domain's brief active period and rapid takedown suggest a disposable phishing operation, but historical WHOIS or passive DNS data may reveal additional linked infrastructure. No evidence of widespread abuse beyond the single blocklist entry was observed, but the GoDaddy impersonation angle warrants heightened scrutiny for credential harvesting or fraudulent service offerings.

VirusTotal
VirusTotal
12 det.
URLQuery
URLQuery
3 threat alerts
شهادة TLS
منتهية الصلاحية أو غير متحقق منها
العمر
6 mo
الحالة المرصودة
خطأ في الخادم HTTP 502
PhishDestroy
قائمة الإتلاف
مدرج

Data Coverage

VirusTotal 12 / 91 URLQuery 3 threat-system alerts PhishStats لم يتم التحقق منها OTX no community references رادار CF no data URLScan capture التقرير المخزن URLScan verdict اكتمل التحليل حجب عناوين DNS لم يتم التحقق منها TLS منتهية الصلاحية أو غير متحقق منها WHOIS 6 mo old لقطة شاشة 3 captures · 3 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكات
Threat Detection Systems 3 alerts
Detection System Indicator Verdict Alert
OpenDNS giftcardmall.org phishing Phishing Block
DNS4EU giftcardmall.org malicious Sinkholed
DNS0 Zero giftcardmall.org malicious Sinkholed

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
9/11

تغطية قوائم الحظر

١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026

١٠ مصادر خارجية مراقبة لا تطابق

لقطة محفوظة

معلومات النطاق

النطاق
URLScan Verdict اكتمل التحليل score 0 report ↗
الخادم / ASN cloudflare · AS13335 CLOUDFLARENET, US
IP Context Cloudflare shared edge origin IP hidden لا تُنسب سمعة Edge-IP إلى هذا المجال.
عنوان IP 104.21.19.185 CDN
الموقع الجغرافيUS San Francisco, US
الشبكةAS13335 · Cloudflare, Inc.
يتم إخفاء عنوان IP الأصلي خلف وكيل CDN. تحتوي نتائج IP العكسي لعنوان الحافة على مستأجرين غير مرتبطين؛ يتطلب العثور على المصدر نظام أسماء النطاقات السلبي أو بيانات شفافية الشهادة.
التسجيلتم إنشاؤه 21/02/2026 (172d)
حالة HTTP502 Error
Elapsed Since First Report 45 days
ما الذي نحتسبه Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: خطأ في الخادم.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
تاريخ أول اكتشاف26/02/2026
DOM Analysisanalyzed 24/03/2026DOM analysis score 73/1003 brand signals
خوادم الأسماءns8.alidns.com
عنوان الصفحة
dhsgs035's Digital Business Card powered by Slink
Impersonates
Godaddy Google Wordpress
شهادة TLS
منتهية الصلاحية أو غير متحقق منها · صادرة عن WE1
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

12 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed Previous stored snapshot: 11 detections
ADMINUSLabs
alphaMountain.ai
BitDefender
Chong Lua Dao
CRDF
CyRadar
Fortinet
G-Data
Gridinsoft
Lionic
سوفوس
VIPRE

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان

أدوات خارجية

HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/giftcardmall.org"
  title="PhishDestroy threat report for giftcardmall.org"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>