الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 2. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

habibicards[.]de

“Pokémon kaufen bei Habibicards – TCG-Shop für One Piece & mehr”

حكم التهديد حرجة 76/100 درجة الأدلة
التوفر آخر نشاط معروف أحدث مراقبة إمكانية الوصول المخزنة
اكتشافات VirusTotal: 2/91 انتحال العلامة التجارية: American express آخر نشاط معروف
OTX: 1 ref 27/12/2025 American express CDN

ملخص الأدلة

حرج
Evidence score
76/100

On 25 July 2026 the domain habibicards.de was observed actively serving content that impersonates American Express. The site resolves to the Cloudflare IP 23.227.38.73, which is registered to AS13335 in Canada. The TLS certificate is issued by Let’s Encrypt (E8) and the connection negotiates HSTS and HTTP/3, indicating a modern web stack. An HTTP 302 redirect is returned for the initial request, and the underlying page title is “Pokémon kaufen bei Habicards – TCG-Shop für One Piece & mehr”, suggesting the domain is being used to host a Shopify‑based e‑commerce front‑end unrelated to the targeted brand. Detected technologies include Shopify, Bootstrap, Trustpilot, Klaviyo, and Cloudflare, confirming that the infrastructure is typical of legitimate storefronts that have been repurposed for malicious activity.

Threat intelligence sources flag the domain as high‑risk. AlienVault OTX lists the domain in one pulse, PhishDestroy has blocked it, and it appears on a single external blocklist. VirusTotal analysis shows three of ninety‑three scanners flag the domain as malicious. The registrar’s nameservers are ns‑cloud‑d1.googledomains.com, ns‑cloud‑d2.googledomains.com, and ns‑cloud‑d3.googledomains.com, all pointing to Google Domains infrastructure.

Gridinsoft assigns a trust score of 0/100, reinforcing the malicious assessment. While the exact phishing kit or credential‑capture page has not been publicly released, the combination of brand impersonation, redirection behavior, and low trust scores provides sufficient evidence for defensive action. Organizations should add habibicards.de and its resolving IP 23.227.38.73 to outbound and inbound filtering rules, monitor DNS queries for the domain, and incorporate the indicator into threat‑intel feeds. Continuous re‑evaluation is advised in case the infrastructure changes or additional detections emerge.

VirusTotal
VirusTotal
2 det.
OTX references
شهادة TLS
منتهية الصلاحية أو غير متحقق منها -70d
الحالة المرصودة
آخر نشاط معروف HTTP 302
PhishDestroy
قائمة الإتلاف
مدرج

Data Coverage

VirusTotal 2 / 91 URLQuery تم تخزين التقرير - الحكم التفصيلي معلق PhishStats لم يتم التحقق منها OTX 1 community reference رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict اكتمل التحليل حجب عناوين DNS لم يتم التحقق منها TLS منتهية الصلاحية أو غير متحقق منها WHOIS not parsed لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
11/13

تغطية قوائم الحظر

١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026

١٠ مصادر خارجية مراقبة لا تطابق

المخطط الزمني للاكتشاف

  1. حالة النطاق

    يمكن الوصول إليه ← يتعذر الوصول إليه

  2. Cloudflare Radar

    تم حفظ فحص Cloudflare Radar · فتح الفحص

لقطة محفوظة

معلومات النطاق

النطاق
URLScan Verdict اكتمل التحليل score 0 report ↗
الخادم / ASN cloudflare · AS13335 CLOUDFLARENET, US
IP Context Cloudflare shared edge origin IP hidden لا تُنسب سمعة Edge-IP إلى هذا المجال.
مسجّل النطاق غير معروف
جهة الإبلاغ عن إساءة الاستخدامabuse@shopify.com
عنوان IP 23.227.38.73 CDN
الموقع الجغرافيCA Ottawa, CA
الشبكةAS13335 · Cloudflare, Inc.
يتم إخفاء عنوان IP الأصلي خلف وكيل CDN. تحتوي نتائج IP العكسي لعنوان الحافة على مستأجرين غير مرتبطين؛ يتطلب العثور على المصدر نظام أسماء النطاقات السلبي أو بيانات شفافية الشهادة.
حالة HTTP302 Found (Temporary)
Elapsed Since First Report 118 days
ما الذي نحتسبه Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: آخر نشاط معروف.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
تاريخ أول اكتشاف27/12/2025
DOM Analysisanalyzed 23/04/2026DOM analysis score 76/10014 brand signals
Submitted URLhttps://habibicards.de/
خوادم الأسماءns-cloud-d1.googledomains.comns-cloud-d2.googledomains.comns-cloud-d3.googledomains.comns-cloud-d4.googledomains.com
بصمة TLS
رصد TLSصالح منذ 06/03/2026فُحص في 12/03/2026
Favicon Hash
عنوان الصفحة
Pokémon kaufen bei Habibicards – TCG-Shop für One Piece & mehr
Impersonates
American Express Ankr Apple Blast Cosmos Gmail Google Mastercard +6
شهادة TLS
منتهية الصلاحية أو غير متحقق منها · صادرة عن Let's Encrypt / E8

التقنيات

حُدّدت ٧ تقنيات عالية الثقة

Shopify Bootstrap Trustpilot Klaviyo HSTS Cloudflare HTTP/3
Cloudflare Radar
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

2 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed Previous stored snapshot: 3 detections
CRDF
Gridinsoft
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of habibicards.de · checked Apr 30, 2026

85
Needs Work
Performance
FCP
2.41s
First Contentful Paint
LCP
3.05s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
296ms
Total Blocking Time
SI
2.65s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان

أدوات خارجية

HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/habibicards.de"
  title="PhishDestroy threat report for habibicards.de"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>