mgba[.]net
فحص التصيد والأمان للنطاق mgba.net
“mGBA - Free Cycle-Accurate Game Boy Advance Emulator | Download”
mgba.net — المحتوى غير متوفر (HTTP 502). ملخص الأدلة: VT 15/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); URLQuery 2 det.; URLScan no malicious verdict; GSB no flag; Spamhaus DBL_PHISH; BL 2 (MetaMask, SEAL); PD 100/100. مسجّل النطاق: Spaceship.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy first observed mgba.net on Jul 2, 2026. Positive findings were recorded by VirusTotal, MetaMask, SEAL, Spamhaus DBL, and URLQuery. Evidence score: 100/100.
VirusTotal recorded 15 detections among 91 engines: ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, CyRadar, ESET, Forcepoint ThreatSeeker on Jul 2, 2026 at 13:00 UTC. The external blocklist snapshot contained 2 matches (MetaMask, SEAL) on Aug 7, 2026 at 14:20 UTC. Spamhaus DBL: DBL_PHISH on Jul 2, 2026 at 14:30 UTC. URLQuery recorded 2 detections. On Jul 2, 2026 at 13:00 UTC, AlienVault OTX listed 1 community pulse reference (not vendor detections); Google Safe Browsing returned no flag. URLScan completed without a malicious verdict (score 0) on Jul 2, 2026 at 12:56 UTC.
HTTP 502 was recorded on Aug 7, 2026 at 01:20 UTC; content was unavailable. Registration records list Spaceship, Inc. as the registrar and Jan 16, 2026 as the registration date. At collection time, the domain resolved to 188.114.97.3. Captured page title: “mGBA - Free Cycle-Accurate Game Boy Advance Emulator | Download”. DOM analysis completed on Jul 2, 2026 at 14:20 UTC; stored DOM score 100/100. IoC extraction completed on Jul 29, 2026 at 02:49 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators.
Stored full analysis02/07/2026
This domain, mgba.net, is flagged as a generic_phishing site impersonating the legitimate mGBA Game Boy Advance emulator. Analysis indicates the page title, "mGBA - Free Cycle-Accurate Game Boy Advance Emulator | Download," mimics the official mGBA branding to deceive users into downloading malicious software. No specific drainer kit signatures have been identified yet, but the domain’s infrastructure and content align with typical phishing tactics targeting gaming and emulator communities.
Technical indicators reveal the domain was registered on January 16, 2026, through Spaceship, Inc., and currently resolves to IP address 188.114.97.3. VirusTotal reports 0/95 detections, suggesting the domain has not yet been widely flagged by security vendors. Google Safe Browsing (GSB) status remains unconfirmed, and no blocklist entries have been recorded as of this analysis. The domain’s recent creation date and lack of prior reputation further elevate its risk profile.
The domain remains active, and no takedown or mitigation actions have been observed. Users are advised to avoid downloading software from mgba.net and to verify the authenticity of emulator sources through official channels. Organizations should monitor network traffic to 188.114.97.3 and consider blocking the domain at the DNS or proxy level. Given the domain’s low detection rate, continued vigilance is required as threat actors may leverage this infrastructure for broader distribution of malware or credential theft.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
حصلت ICANN على أموالها. أما المساءلة فلم تصل.
بالنسبة إلى نطاق gTLD هذا، يعمل المسجّل المذكور أعلاه بموجب عقد مع ICANN. وتحصّل ICANN رسوماً سنوية ومتغيرة ورسومًا قائمة على المعاملات مرتبطة بعمليات التسجيل والتجديد والنقل.
الاعتماد: جرت الاستفادة منه مالياً. المساءلة: يُرجى التحقق مرة أخرى لاحقاً.
ثم يبدأ السحر: تكتب ICANN البند RAA §3.18، ويتولى المسجّل التحقيق في إساءة الاستخدام داخل قاعدة عملائه، ويقدّم الضحايا الأدلة مجاناً، بينما تنتظر كل طبقة أن يتحرك طرف آخر. إذا كان ذلك يجعل الضحايا يشعرون بمزيد من الأمان، فممتاز—لقد أدّت الفاتورة مهمتها.
تحليل VirusTotal
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
حول هذا التقرير: mgba.net
يقدم هذا التقرير أحدث الأدلة المخزنة المتاحة لـ PhishDestroy. يتم عرض الطوابع الزمنية للمصدر حيثما كان ذلك متاحًا؛ يمكن أن تتغير أحكام التوفر والبائعين بعد التجميع.
عرض الموقع الذي تم التقاطه عنوان الصفحة “mGBA - Free Cycle-Accurate Game Boy Advance Emulator | Download”.
اعتبارًا من 07/08/2026، كان لدى mgba.net اكتشافات من محركات الأمان 15.
إذا كنت تعتقد أن هذه القائمة غير دقيقة، تقديم استئناف. للتعرف على منهجيتنا، قم بزيارة صفحة الأسئلة الشائعة.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب