gwal70x[.]life
“gwal70x.life”
gwal70x.life — المحتوى غير متوفر. نوع الاحتيال: Crypto Scam. ملخص الأدلة: VirusTotal 9/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, ESET); Spamhaus DBL_SPAM; PhishDestroy score 77/100. مسجّل النطاق: URL Solutions.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Analysis shows that the domain gwal70x.life was registered on February 21, 2026 through URL Solutions, Inc. and is currently active. The domain resolves to four Pananames nameservers (ns1‑ns4.pananames.com) and presents a valid SSL certificate identified as R11. The page title returned by the web server is identical to the domain name, and the HTTP response code is 200, indicating that the site is reachable and serving content.
Technical profiling reveals a Gridinsoft trust score of 0 out of 100, and VirusTotal reports that 2 of 95 scanned security vendors flagged the domain as malicious. The domain appears on a single external blocklist and is explicitly blocked by PhishDestroy. Intelligence categorizes the scam as a cryptocurrency‑focused phishing operation, and the risk level is assessed as high. These indicators collectively suggest a deliberately crafted malicious site intended to harvest cryptocurrency credentials or payments.
Open questions remain regarding the specific phishing vector employed, the targeted user base, and any underlying malicious payloads that may be delivered. The public page does not disclose the exact lure used, and no additional indicators such as malicious URLs, email templates, or compromised accounts have been observed. Consequently, defenders lack a complete picture of the threat actor’s infrastructure beyond the domain registration and hosting details.
Defensive actions should include immediate blocking of gwal70x.life at perimeter and DNS filtering layers, as well as updating intrusion detection signatures to flag HTTP traffic to this host. Continuous monitoring of associated Pananames nameservers for new domains sharing the same registration pattern is advised. Organizations should also educate users about cryptocurrency phishing schemes and enforce multi‑factor authentication for any wallet or exchange services to mitigate credential theft.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب