الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 6. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

land[.]rw

فحص التصيد والأمان للنطاق land.rw

“Verification in Progress”

حكم التهديد حرجة 78/100 درجة الأدلة
التوفر المحتوى غير متوفر لم يكن المحتوى متاحًا في الملاحظة الأخيرة
إشارات الخطر
اكتشافات VirusTotal: 6/91 انتحال العلامة التجارية: Microsoft
6/91 VT 21/07/2026 غير متاح منذ 21/07/2026 Microsoft Impersonation 1 Report Sent 2h to unavailable GB GB
ملخص التقرير

land.rw — المحتوى غير متوفر (HTTP 502). انتحال العلامة التجارية: Microsoft; نوع الاحتيال: Impersonation. ملخص الأدلة: VirusTotal 6/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, MalwareURL); URLScan malicious verdict; PhishDestroy score 78/100. مسجّل النطاق: Inzozi Solution.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
7F5C5D84
الدرجة
78/100

Analysis of land.rw indicates that the domain was registered on May 20, 2025 through Inzozi Solution Limited and is hosted on the IP address 51.195.148.90. The authoritative name servers are cdns.ovh.net together with ns1.register.rw and ns2.register.rw, suggesting the infrastructure is tied to OVH’s hosting platform and a local Rwandan registrar. The domain appears on a single security blocklist and has been actively blocked by the PhishDestroy service, confirming that it is currently being used for malicious purposes. VirusTotal records show that the domain was scanned by 95 independent vendors, none of which returned a detection at the time of the scan; this absence of alerts does not constitute evidence of benign behavior and should be interpreted as a lack of current signatures rather than safety. No public Safe Browsing, OTX, SSL certificate, HTTP response code, trust‑score, or page‑title information is available in the supplied intelligence, leaving those vectors unverified. The classification provided is "generic phishing," indicating the site is likely employed to harvest credentials or personal data without targeting a specific brand. Defenders should therefore treat any traffic to land.rw as suspicious and enforce block or quarantine policies. Recommended actions include adding the domain to internal deny lists, monitoring DNS queries for the listed name servers, and correlating any outbound connections to the host IP with user activity logs. Continuous re‑evaluation is advised, as additional indicators such as malware payloads, phishing page snapshots, or updated blocklist entries may emerge.

VirusTotal
VirusTotal
6 det.
شهادة TLS
Let's Encrypt 29d
العمر
1.2 yr
الحالة المرصودة
المحتوى غير متوفر 502
PhishDestroy
قائمة الإتلاف
مُدرج
Reports Sent
1
نطاق تغطية البيانات VirusTotal 6 / 91 URLQuery checked — no detections recorded PhishStats لم يتم التحقق منها OTX no community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict malicious حجب عناوين DNS لم يتم التحقق منها TLS valid certificate, 29d WHOIS 15 mo old لقطة شاشة 3 captures · 3 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
13/13
Sent Report Recorded
Stored sent-report record for registrar Inzozi Solution Limited, hosting provider, 3 abuse contacts
contact@jean.rwjean@inzozi.ioabuse@ovh.net
21/07/2026

حالة قوائم الحظر العامة

لقطة محفوظة

معلومات النطاق

النطاق
URLScan Verdict ضار score 100 Phishing brand: Microsoft report ↗
الخادم / ASN Apache · AS16276 OVH OVH SAS, FR
سمعة عنوان IP abuse score 0/100 0 reports checked 21/07/2026
مسجّل النطاق Inzozi Solution
جهة الإبلاغ عن إساءة الاستخدامcontact@jean.rw, jean@inzozi.io, abuse@ovh.net
البحث في قاعدة بيانات WHOISICANN RDAP لـ land.rw →
عنوان IP 51.195.148.90 GB
الموقع الجغرافيGB Bexley, GB
الشبكةAS16276 · OVH SAS
التسجيلتم إنشاؤه 20/05/2025 Expires 20/05/2029
حالة HTTP502 Error
الوقت حتى أول تعذّر للوصول 2h
ما الذي نحتسبه الوقت المنقضي من أول تقرير عن إساءة الاستخدام المخزن إلى الملاحظة الأولى بأن المحتوى غير متوفر. هذا لا يحدد السبب.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف21/07/2026
DOM Analysisanalyzed 29/07/2026score 78/1001 brand signal
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://land.rw/welcometosecuredocumentportal/preload-centered-obfuscated.html
خوادم الأسماءcdns.ovh.netns1.register.rwns2.register.rw
TLS Fingerprint
TLS Observationvalid from 21/05/2026scanned 21/07/2026
Case ID
عنوان الصفحة
Verification in Progress
Impersonates
Microsoft
شهادة TLS
Valid transport encryption · صادرة عن Let's Encrypt · valid for 29 days
التقنيات · 4 identified
WordPress
CMS Blogs

WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. Features include a plugin architecture and a template system.

wordpress.org ثقة 100٪
MySQL
Databases

MySQL is an open-source relational database management system.

mysql.com ثقة 100٪
PHP
Programming languages

PHP is a general-purpose scripting language used for web development.

php.net ثقة 100٪
Apache HTTP Server
Web servers

Apache is a free and open-source cross-platform web server software.

httpd.apache.org ثقة 100٪
Detected via رادار Cloudflare · Wappalyzer engine
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

6 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed First positive detection Previous stored snapshot: 0 detections
alphaMountain.ai
CRDF
Forcepoint ThreatSeeker
Gridinsoft
MalwareURL
SOCRadar
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of land.rw · checked Jul 21, 2026

97
Good
Performance
FCP
1.23s
First Contentful Paint
LCP
1.23s
Largest Contentful Paint
CLS
0.003
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
4.52s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

الأدلة والتقارير الخارجية

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260721-8AA724 Recipient: abuse@ovh.net
Page title stored with report: Verification in Progress
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 384.4 KB
نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/land.rw"
  title="PhishDestroy threat report for land.rw"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>