الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 12. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

klosterhof-cronschwitz[.]de

“Standardsouth – Just another WordPress site”

حكم التهديد حرجة 86/100 درجة الأدلة
التوفر لم يتم التحقق منها لم يتم التحقق من إمكانية الوصول الحالية
اكتشافات VirusTotal: 12/91 Spamhaus DBL: DBL_PHISH انتحال العلامة التجارية: Facebook
OTX: 16 refs 03/12/2025 Facebook
ملخص التقرير

klosterhof-cronschwitz.de — لم يتم التحقق منها. انتحال العلامة التجارية: Facebook; نوع الاحتيال: Social Media Phishing. ملخص الأدلة: VirusTotal 12/91 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, CyRadar, ESET); Google Safe Browsing flagged; Spamhaus DBL_PHISH; PhishDestroy score 86/100.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
94C380CB
الدرجة
86/100

The domain klosterhof-cronschwitz.de is currently active and has been identified as a high‑risk brand‑impersonation campaign targeting Facebook. The site appears on two public blocklists, PhishDestroy and PhishingDB, and is referenced in sixteen AlienVault OTX threat‑intel pulses. VirusTotal analysis shows that sixteen of ninety‑five security vendors have flagged the domain, indicating a consensus of malicious intent.

Infrastructure analysis shows the domain resolves to the IPv4 address 217.160.0.107, which belongs to the German AS8560 network operated by IONOS SE. The hosting environment publishes four authoritative nameservers—ns1019.ui-dns.biz, ns1042.ui-dns.de, ns1110.ui-dns.com, and ns1125.ui-dns.org—suggesting use of a standard DNS provider. HTTP requests receive a 301 redirect, the server reports both Nginx and Apache HTTP Server components, and HTTP Strict Transport Security (HSTS) is enabled. The TLS certificate is issued by Sectigo Limited under the Sectigo Public Server Authentication CA DV R36, and the Gridinsoft trust score is 0 out of 100. Google Safe Browsing classifies the URL as “SOCIAL_ENGINEERING”. The page title returned is “Standardsouth – Just another WordPress site”, which bears no obvious relationship to the Facebook brand.

Given the combination of blocklist listings, multiple vendor detections, and a low trust score, the domain is highly likely to be used for social‑media credential harvesting or other fraudulent interactions under the guise of Facebook. Defenders should proactively block the domain at perimeter and DNS layers, monitor outbound connections to the associated IP range, and ensure that any user‑reported URLs matching the page title or SSL fingerprint are investigated. Continuous threat‑intel feeds should be consulted for any emerging indicators, and remediation actions should be documented to maintain compliance with high‑risk phishing response procedures.

VirusTotal
VirusTotal
12 det.
OTX references
شهادة TLS
Sectigo Limited / Sectigo Public Server Authentication CA DV R36
الحالة المرصودة
لم يتم التحقق منها
PhishDestroy
قائمة الإتلاف
مُدرج
نطاق تغطية البيانات VirusTotal 12 / 91 URLQuery تم تخزين التقرير - الحكم التفصيلي معلق PhishStats checked — no match recorded OTX 16 community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict اكتمل التحليل حجب عناوين DNS لم يتم التحقق منها TLS valid certificate, 180d WHOIS not parsed لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
16/18

حالة قوائم الحظر العامة

لقطة محفوظة

معلومات النطاق

النطاق
URLScan Verdict اكتمل التحليل score 0 report ↗
Google Safe Browsing تم وضع علامة عليها Social engineering checked 25/02/2026
الخادم / ASN Apache · AS8560 IONOS-AS IONOS SE, DE
سمعة عنوان IP abuse score 7/100 3 reports checked 17/07/2026
مسجّل النطاق غير معروف
جهة الإبلاغ عن إساءة الاستخدامabuse@ionos.com
عنوان IP 217.160.0.107 DE
الموقع الجغرافيDE Stuttgart, DE
الشبكةAS8560 · IONOS SE
Elapsed Since First Report 102 days
ما الذي نحتسبه Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: لم يتم التحقق منها.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف03/12/2025
DOM Analysisanalyzed 11/03/2026score 10/1003 brand signals
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://klosterhof-cronschwitz.de/
خوادم الأسماءns1019.ui-dns.bizns1042.ui-dns.dens1110.ui-dns.comns1125.ui-dns.org
TLS Fingerprint
TLS Observationvalid from 27/01/2026scanned 11/03/2026
Favicon Hash
عنوان الصفحة
Standardsouth – Just another WordPress site
Impersonates
Facebook Instagram Wordpress
شهادة TLS
Valid transport encryption · صادرة عن Sectigo Limited / Sectigo Public Server Authentication CA DV R36 · valid for 180 days
التقنيات · 3 identified
Nginx
Web servers Reverse proxies

High-performance HTTP server and reverse proxy, known for stability and low resource usage.

Apache HTTP Server
Web servers

Most widely used open-source HTTP server software.

HSTS
الأمن

HTTP Strict Transport Security — forces browsers to use HTTPS connections only.

Detected via رادار Cloudflare · Wappalyzer engine
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

12 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed Previous stored snapshot: 16 detections
ADMINUSLabs
alphaMountain.ai
Chong Lua Dao
CyRadar
ESET
Emsisoft
Fortinet
Gridinsoft
Lionic
SOCRadar
سوفوس
Webroot

الأدلة المؤرشفة

Wayback Machine Snapshot
لقطة تاريخية متاحة لمراجعة الأدلة
View Archive
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of klosterhof-cronschwitz.de · checked Mar 1, 2026

93
Good
Performance
FCP
1.99s
First Contentful Paint
LCP
2.97s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
2.32s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

الأدلة والتقارير الخارجية

نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/klosterhof-cronschwitz.de"
  title="PhishDestroy threat report for klosterhof-cronschwitz.de"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>