idpsupport[.]org
فحص التصيد والأمان للنطاق idpsupport.org
“Index of /”
idpsupport.org — آخر نشاط معروف (HTTP 302). نوع الاحتيال: Impersonation. ملخص الأدلة: VirusTotal 11/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 100/100. مسجّل النطاق: Hosting Concepts.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Analysis of the domain idpsupport.org indicates it is actively serving as a generic phishing infrastructure with high-risk classification. Registered on May 4, 2026, through Hosting Concepts B.V. d/b/a Registrar.eu, the domain resolves to IP 176.123.0.199, hosted by Alexhost SRL in Moldova. Nameservers ns7.alexhost.com and ns8.alexhost.com further link it to this provider. The domain currently returns an HTTP 302 redirect status, suggesting it may be funneling traffic to another malicious endpoint, though the destination remains unconfirmed. Security vendors PhishDestroy, MetaMask, and SEAL have blocked this domain, and it appears on three security blocklists. AlienVault OTX lists it in one threat intelligence pulse, while Gridinsoft assigns a trust score of 0/100. The SSL certificate is misconfigured, presenting as idpsupport.org.terkepmasolatletoltes.com, a discrepancy that may indicate an attempt to evade detection or impersonate a legitimate service. The page title 'Index of /' suggests an exposed directory listing, a common misconfiguration in hastily deployed phishing sites. No specific brand impersonation is confirmed from the available data, though the domain name implies a support-themed deception. Defenders should treat this domain as active and malicious, blocking resolution at the DNS level and monitoring for connections to 176.123.0.199. Further investigation is required to determine the exact phishing kit or payload in use, as current intelligence does not provide these details.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
المراجع المتقاطعة لاستخبارات التهديدات · source references
تحليل VirusTotal
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب