الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 4. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

magic-rust[.]ru

فحص التصيد والأمان للنطاق magic-rust.ru

“MAGIC MARKET”

حكم التهديد حرجة 76/100 درجة الأدلة
التوفر آخر نشاط معروف أحدث مراقبة إمكانية الوصول المخزنة
إشارات الخطر
اكتشافات VirusTotal: 4/91 URLQuery threat systems: 2 alerts آخر نشاط معروف
4/91 VT URLQuery: 2 threat alerts OTX: 1 ref 15/06/2026 RU RU
ملخص التقرير

magic-rust.ru — آخر نشاط معروف (HTTP 307). ملخص الأدلة: VirusTotal 4/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft); URLQuery 2 alerts; PhishDestroy score 76/100.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
B4CFD040
الدرجة
76/100

This domain, magic-rust.ru, is currently flagged as a high-risk generic phishing site. The domain has been active since its creation on May 21, 2026, and is currently resolving to the IP address 185.97.254.134, which is located in Russia and hosted by ARTPLANET PEER SPB ADDOS # 1. The site has an HTTP status of 307, indicating a temporary redirect, which could be a technique used to evade detection or to redirect users to a different malicious site. The domain appears on one security blocklist and is blocked by PhishDestroy, a security service, suggesting that it has been identified as potentially harmful. Additionally, the SSL certificate for magic-rust.ru is issued by Let's Encrypt, which is a common choice for legitimate and malicious sites alike, and does not inherently indicate trustworthiness. The domain's MX records point to mx.yandex.net, indicating that it may be using Yandex for email services, which could be used to facilitate further phishing activities or for other malicious purposes. The Gridinsoft trust score for this domain is 0 out of 100, which is a strong indicator of its untrustworthiness. VirusTotal reports that 2 out of 95 security vendors have flagged this domain, and it has been mentioned in one threat intelligence pulse on AlienVault OTX. While the low number of security vendor flags might suggest some uncertainty, the combination of the domain's appearance on a security blocklist, its low trust score, and its active status strongly indicate that it is being used for phishing. Defenders should exercise extreme caution when encountering this domain and should consider blocking it at the network level to prevent any potential phishing attacks. Further investigation into the domain's activities and the nature of the content it redirects to would provide additional insights and help in making a more comprehensive assessment of the threat.

VirusTotal
VirusTotal
4 det.
URLQuery
URLQuery
2 threat alerts
OTX references
شهادة TLS
منتهية الصلاحية أو غير متحقق منها -64d
العمر
3 mo New
الحالة المرصودة
آخر نشاط معروف 307
PhishDestroy
قائمة الإتلاف
مُدرج
نطاق تغطية البيانات VirusTotal 4 / 91 URLQuery 2 threat-system alerts PhishStats لم يتم التحقق منها OTX 1 community reference رادار CF no data URLScan capture not submitted URLScan verdict التقييم غير متاح حجب عناوين DNS لم يتم التحقق منها TLS منتهية الصلاحية أو غير متحقق منها WHOIS 3 mo old لقطة شاشة stored capture سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكات
Threat Detection Systems 2 alerts
Detection System Indicator Verdict Alert
Hagezi Threat Feed magic-rust.ru malicious Sinkholed
DNS4EU magic-rust.ru malicious Sinkholed

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
7/9

حالة قوائم الحظر العامة

لقطة محفوظة

معلومات النطاق

النطاق
الخادم / ASN nginx/1.20.1 · AS49542 ArtPlanet LLC
سمعة عنوان IP abuse score 0/100 0 reports checked 13/07/2026
عنوان IP 185.97.254.134 RU
الموقع الجغرافيRU St Petersburg, RU
الشبكةAS49542 · ARTPLANET PEER SPB ADDOS # 1
التسجيلتم إنشاؤه 21/05/2026 (79d · New)
حالة HTTP307 Temporary Redirect
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف15/06/2026
MX Records10 mx.yandex.net
TLS Fingerprint
TLS Observationvalid from 08/03/2026scanned 21/05/2026
عنوان الصفحة
MAGIC MARKET
شهادة TLS
منتهية الصلاحية أو غير متحقق منها · صادرة عن Let's Encrypt / R13
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

4 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed Previous stored snapshot: 2 detections
alphaMountain.ai
CRDF
Forcepoint ThreatSeeker
Gridinsoft

الأدلة والتقارير الخارجية

نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/magic-rust.ru"
  title="PhishDestroy threat report for magic-rust.ru"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>