kizdar-astana[.]xyz
“ÒÑÐ·Ð´Ð°Ñ Ð½ÐµÑ ÐÑÑана â зеÑкало | аÑÑана кÑÐ·Ð´Ð°Ñ Ð½ÐµÑ, kizdar net …”
kizdar-astana.xyz — خطأ في الخادم (HTTP 502). انتحال العلامة التجارية: Google; نوع الاحتيال: Credential Phishing. ملخص الأدلة: VirusTotal 5/91 (alphaMountain.ai, Forcepoint ThreatSeeker, Fortinet, SOCRadar); URLQuery 1 alert; Spamhaus DBL_PHISH; PhishDestroy score 83/100. مسجّل النطاق: NiceNIC.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain is flagged as a high-risk credential harvesting phishing site targeting users through deceptive login portals. Analysis indicates the infrastructure is designed to mimic legitimate authentication pages, tricking visitors into submitting sensitive credentials such as usernames, passwords, and multi-factor authentication codes. The domain specifically impersonates regional or organizational login pages, increasing the likelihood of successful compromise for users who mistake it for a trusted service. Infrastructure analysis reveals the domain was registered on July 8, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar frequently associated with malicious activity. It currently resolves to IP address 172.67.170.37, hosted on a content delivery network that obscures the true origin of the phishing server. VirusTotal detection rates show 4 out of 95 security vendors have flagged the domain as malicious, a low but notable ratio that suggests the campaign is either new or employing evasion techniques to avoid widespread detection. No blocklist entries were observed at the time of analysis, indicating the domain may still be in the early stages of deployment. Users who have visited kizdar-astana.xyz or entered credentials on the site should immediately revoke any submitted login information. Change passwords for all accounts where the same credentials may have been reused, prioritizing financial, email, and work-related services. Enable multi-factor authentication on all critical accounts, using app-based or hardware tokens rather than SMS-based methods. Monitor accounts for unauthorized access or suspicious activity, including unexpected password reset emails or login attempts from unfamiliar locations. If corporate credentials were exposed, report the incident to internal security teams for further investigation and potential remediation actions such as forced password resets or account lockouts.
استخبارات أمن الشبكات Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | kizdar-astana.xyz |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-20 03:06:56 UTC
التقنيات · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com ثقة 100٪HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org ثقة 100٪تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of kizdar-astana.xyz · checked Jul 11, 2026
الأدلة والتقارير الخارجية
PD-20260713-526F1A Recipient: abuse@gen.xyz هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب