movexpressdrop[.]com
فحص التصيد والأمان للنطاق movexpressdrop.com
“Move Express Drop | Express Delivery, Courier”
movexpressdrop.com — المحتوى غير متوفر (HTTP 502). نوع الاحتيال: Generic Phishing. ملخص الأدلة: VirusTotal 5/91 (alphaMountain.ai, CRDF, Gridinsoft, SOCRadar, desenmascara.me); PhishDestroy score 73/100. مسجّل النطاق: Dynadot.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
This domain, movexpressdrop.com, is identified as a generic phishing site targeting users through a fraudulent courier or express delivery service facade. The page title, Move Express Drop | Express Delivery, Courier, suggests an attempt to impersonate legitimate logistics providers, likely aiming to harvest credentials, payment details, or personal information from victims under the pretense of parcel tracking or delivery notifications. No specific brand impersonation or drainer kit signatures were confirmed in initial analysis, but the use of common web technologies (Bootstrap, jQuery, OWL Carousel) indicates a templated approach typical of low-to-moderate sophistication phishing operations.
Technical indicators confirm elevated risk: the domain was registered on November 10, 2025, via Dynadot Inc, and resolves to IP address 163.61.188.7. VirusTotal reports 6 out of 95 security vendors flagging the domain as malicious, while Gridinsoft and Scamadviser assign trust scores of 29/100 and 31/100, respectively. The domain appears on two security blocklists and is actively blocked by PhishDestroy and OISD. Google Safe Browsing status was not explicitly provided, but the combination of low trust scores and blocklist presence further corroborates its malicious classification.
As of the latest assessment, movexpressdrop.com has been marked as taken_down, indicating that hosting or DNS resolution has been disrupted. However, residual risk persists due to potential domain re-registration, IP reuse, or migration of the phishing infrastructure to new endpoints. Users who interacted with the site should assume credential exposure and monitor for unauthorized transactions or identity misuse. Organizations are advised to update blocklists with the domain and associated IP, while individuals should verify delivery notifications through official courier channels only, avoiding links from unsolicited communications.
نطاق تغطية البيانات14 recorded checks
مؤشرات الأمان
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات · 8 identified
Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com ثقة 100٪OWL Carousel is an enabled jQuery plugin that lets you create responsive carousel sliders.
owlcarousel2.github.io ثقة 100٪jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com ثقة 100٪Popper is a positioning engine, its purpose is to calculate the position of an element to make it possible to position it near a given reference element.
popper.js.org ثقة 100٪HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org ثقة 100٪تحليل VirusTotal
الأدلة والتقارير الخارجيةIndependent lookups and source reports
PD-20260513-71D876 Recipient: abuse@whiteprivacy.com Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.