MALICIOUS — HIGH
mbzbest[.]com
This domain mbzbest.com is currently active and has been identified as a fraudulent impersonation of the Trust Wallet brand.
- VirusTotal
- 4/91
- Blocklists
- No stored match
- التوفر
- خطأ في الخادم · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
mbzbest.com — خطأ في الخادم (HTTP 502). انتحال العلامة التجارية: Trust Wallet; نوع الاحتيال: Crypto Scam. ملخص الأدلة: VirusTotal 4/91 (ChainPatrol, alphaMountain.ai, Chong Lua Dao, Gridinsoft); PhishDestroy score 65/100. مسجّل النطاق: Network Solutions.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
This domain mbzbest.com is currently active and has been identified as a fraudulent impersonation of the Trust Wallet brand. The site presents a page titled “Security Check”, which aligns with the reported crypto‑scam classification. Infrastructure analysis shows the domain is served through Cloudflare, using the nameservers fiona.ns.cloudflare.com and hank.ns.cloudflare.com, and resolves to the IP address 172.67.206.1 belonging to AS13335 Cloudflare, Inc., located in the United States. The TLS certificate is issued by Google Trust Services under the WE1 label, indicating the connection is encrypted but does not mitigate the brand‑spoofing risk. HTTP requests receive a 301 redirect response, a common technique for moving traffic to a malicious landing page.
Technology fingerprints reveal PHP execution and support for HTTP/3, both consistent with the observed hosting environment. VirusTotal scans have flagged the domain in five out of ninety‑three security engines, reinforcing the suspicion of malicious activity. The domain appears on at least one public security blocklist and is specifically listed by PhishDestroy, providing an actionable indicator for network‑level denial. Registration data shows the domain was created on 15 April 1999 and is registered through Network Solutions, LLC, a reputable registrar, which suggests the malicious actors are leveraging an aged domain to benefit from existing DNS reputation.
What remains uncertain is the exact content and user‑experience of the “Security Check” page, as well as any additional payloads or credential‑harvesting mechanisms that may be delivered after the initial redirect. Defenders should therefore block or quarantine mbzbest.com at the DNS and proxy layers, monitor for outbound connections to the associated Cloudflare IP range, and update intrusion‑prevention signatures with the observed TLS fingerprint and HTTP‑3 usage.
نطاق تغطية البيانات13 recorded checks
مؤشرات الأمان
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات · 3 identified
Server-side scripting language designed for web development.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
تحليل VirusTotal
الأدلة المؤرشفة
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of mbzbest.com · checked Mar 6, 2026
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.