الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 19. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . The recorded recipient is abuse@godaddy.com. The latest stored availability evidence still shows the domain reachable; 12 days has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
12 days
Reports sent
1
Latest case ID
PD-20260801-D88DFB
Current status
Observed active at latest stored check
أمن المجال وذكاء التهديدات

hgser[.]closer[.]website

“Веб-пошта”

حكم التهديد حرجة 95/100 درجة الأدلة
التوفر لم يتم التحقق منها لم يتم التحقق من إمكانية الوصول الحالية
اكتشافات VirusTotal: 19/91 URLQuery threat systems: 4 alerts انتحال العلامة التجارية: Outlook
01/08/2026 Outlook 1 Report Sent
ملخص التقرير

hgser.closer.website — لم يتم التحقق منها. انتحال العلامة التجارية: Outlook; نوع الاحتيال: Impersonation. ملخص الأدلة: VirusTotal 19/91 (Criminal IP, Chong Lua Dao, Cluster25, CRDF, CyRadar); URLQuery 4 alerts; URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. مسجّل النطاق: GoDaddy.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
4625BA1A
الدرجة
95/100

Analysis of hgser.closer.website, created on August 05, 2022 and currently listed as active, indicates a high‑risk generic phishing operation. The domain is registered through GoDaddy.com, LLC and resolves to the IPv4 address 94.130.129.186. Authoritative name servers ns1.closer.ws and ns2.closer.ws are configured for the zone, suggesting the infrastructure is hosted on the closer.ws hosting platform.

Reputation data from VirusTotal shows that 18 of 91 security vendors have flagged the domain, providing a moderate consensus of malicious classification. The domain is present on two external blocklists, specifically PhishDestroy and OpenPhish, reinforcing its status as a known phishing vector. No additional public evidence such as page titles, SSL certificate details, or HTTP response codes is available at this time, leaving the exact content of the site unverified.

Defenders should treat hgser.closer.website as hostile; recommended actions include adding the domain and its resolving IP address to network‑level deny lists, updating intrusion‑prevention signatures, and monitoring for any outbound connections to the IP. Continuous re‑evaluation is advised, as threat actors may modify the payload or hosting configuration without notice.

VirusTotal
VirusTotal
19 det.
URLQuery
URLQuery
4 threat alerts
رادار CF
ضار
ScamAdviser
Scamadviser
80/100
شهادة TLS
Let's Encrypt 23d
العمر
4 yr
الحالة المرصودة
لم يتم التحقق منها
PhishDestroy
قائمة الإتلاف
مُدرج
Reports Sent
1
نطاق تغطية البيانات VirusTotal 19 / 91 URLQuery 4 threat-system alerts PhishStats لم يتم التحقق منها OTX no community references رادار CF provider verdict: malicious URLScan capture التقرير المخزن URLScan verdict malicious حجب عناوين DNS لم يتم التحقق منها TLS valid certificate, 23d WHOIS 49 mo old لقطة شاشة 4 captures · 3 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها Scamadviser 80/100
استخبارات أمن الشبكات
Threat Detection Systems 4 alerts
Detection System Indicator Verdict Alert
Cloudflare DNS hgser.closer.website malicious Sinkholed
Quad9 DNS hgser.closer.website malicious Sinkholed
OpenDNS hgser.closer.website phishing Phishing Block
DNS4EU hgser.closer.website malicious Sinkholed
CF Cloudflare Radar Verdict ضار
Phishing Phishing Security threats

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
15/16
Sent Report Recorded
Stored sent-report record for registrar GoDaddy.com, LLC, hosting provider, 2 abuse contacts
abuse@hetzner.comabuse@godaddy.com
01/08/2026

حالة قوائم الحظر العامة

لقطة محفوظة

عنوان الصفحة
Веб-пошта
Impersonates
Outlook
شهادة TLS
Valid transport encryption · صادرة عن Let's Encrypt · valid for 23 days

معلومات النطاق

النطاق
URLScan Verdict ضار score 100 Phishing brand: Owa report ↗
الخادم / ASN nginx · AS24940 HETZNER-AS Hetzner Online GmbH, DE
سمعة عنوان IP abuse score 0/100 0 reports checked 01/08/2026
Registrar (base domain) GoDaddy US(US)
جهة الإبلاغ عن إساءة الاستخدامabuse@hetzner.com, abuse@godaddy.com
البحث في قاعدة بيانات WHOISICANN RDAP لـ closer.website →
عنوان IP 94.130.129.186 DE
الموقع الجغرافيDE Falkenstein, DE
الشبكةAS24940 · Hetzner Online GmbH
Registration (base domain)closer.website · تم إنشاؤه 05/08/2022 Expires 05/08/2026
Elapsed Since First Report 2 days
ما الذي نحتسبه Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: لم يتم التحقق منها.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف01/08/2026
DOM Analysisanalyzed 01/08/2026score 0/1001 brand signal
IoC Extractionscanned 02/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://hgser.closer.website/
خوادم الأسماءns1.closer.wsns2.closer.ws
TLS Fingerprint
TLS Observationvalid from 26/05/2026scanned 01/08/2026
TLS SAN Domainscloser.website
Favicon Hash
Case ID
ICANN OVERSIGHT Registration: closer.website

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For the registrable domain closer.website behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.
المراجع المتقاطعة لاستخبارات التهديدات · source references
ScamAdviser Public lookup
A public ScamAdviser lookup is available. Review its current score and warnings at the source; the existence of a lookup page is not itself a malicious verdict.
View on ScamAdviser
Live-fetched via CF worker proxy pool · cached 24h
التقنيات · 3 identified
Outlook Web App
Webmail

Outlook on the web is an information manager web app. It includes a web-based email client, a calendar tool, a contact manager, and a task manager.

help.outlook.com ثقة 100٪
Microsoft ASP.NET
Web frameworks

ASP.NET is an open-source, server-side web-application framework designed for web development to produce dynamic web pages.

www.asp.net ثقة 100٪
Nginx
Web servers Reverse proxies

Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.

nginx.org ثقة 100٪
Detected via رادار Cloudflare · Wappalyzer engine
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

19 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed Previous stored snapshot: 18 detections
Criminal IP
Chong Lua Dao
Cluster25
CRDF
CyRadar
ESET
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
كاسبرسكي
LevelBlue
Lionic
MalwareURL
Seclookup
SOCRadar
سوفوس
VIPRE
Webroot

الأدلة المؤرشفة

Wayback Machine Snapshot
لقطة تاريخية متاحة لمراجعة الأدلة
View Archive
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of hgser.closer.website · checked Aug 1, 2026

95
Good
Performance
FCP
2.25s
First Contentful Paint
LCP
2.33s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
3.41s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Stored Capture Evidence 1 snapshot

Timestamped response metadata retained by the local collection pipeline. Each value below belongs to the displayed archive time.

Archived HTTP response HTTP 200
Requested URL: http://hgser.closer.website/
Final URL: https://hgser.closer.website/
Веб-пошта
الاستجابة
HTTP 200
HTML body
77.9 KB
Compressed
26.2 KB
Links
1 internal · 1 external
Detected technologies
nginx
Selected response headers
Server: nginx
Content-Type: text/html
Cache-Control: max-age=0
Content-Encoding: gzip
HSTS: not observed DNSSEC: not observed WAF / firewall: not observed Cloaking flag: not observed
All stored response-header names (8)
ServerDateContent-TypeTransfer-EncodingConnectionExpiresCache-ControlContent-Encoding

الأدلة والتقارير الخارجية

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260801-D88DFB Recipient: abuse@godaddy.com
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 26.2 KB
نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/hgser.closer.website"
  title="PhishDestroy threat report for hgser.closer.website"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

رسالة شكر صادقة جداً

منشئ مسودة ساخرة

المستلم
سياق الرسوم

مسودة ساخرة. أرقام الرسوم تقديرية، ولا ندّعي نسبتها بدقة إلى هذا النطاق.