الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 14. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

msg-secure-esl[.]top

فحص التصيد والأمان للنطاق msg-secure-esl.top

“ESL Federal Credit Union - Log in”

حكم التهديد حرجة 100/100 درجة الأدلة
التوفر المحتوى غير متوفر لم يكن المحتوى متاحًا في الملاحظة الأخيرة
إشارات الخطر
VirusTotal detections: 14 (vendor total unavailable) Spamhaus DBL: DBL_PHISH URLQuery threat systems: 3 alerts انتحال العلامة التجارية: Eslfcu المجال الصغير: 21 عمره أيام
14 detections VT URLQuery: 3 threat alerts 19/07/2026 غير متاح منذ 20/07/2026 Eslfcu 1 Report Sent 7h to unavailable CA CA
ملخص التقرير

msg-secure-esl.top — المحتوى غير متوفر (HTTP 502). انتحال العلامة التجارية: Eslfcu. ملخص الأدلة: VirusTotal 14 detections (engine total unavailable) (alphaMountain.ai, BitDefender, Emsisoft, Forcepoint ThreatSeeker, Fortinet); URLQuery 3 alerts; URLScan malicious verdict; Google Safe Browsing flagged; Spamhaus DBL_PHISH; CF Radar malicious; PhishDestroy score 100/100. مسجّل النطاق: NameSilo.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة

Ref 308AD1D1 100/100 حرج

PhishDestroy first observed msg-secure-esl.top on Jul 19, 2026. Stored content metadata identifies Eslfcu as the apparent target. The captured page title is “ESL Federal Credit Union - Log in”. Evidence score: 100/100 (critical).

6 independent sources recorded positive findings: VirusTotal, Google Safe Browsing, Spamhaus DBL, Cloudflare Radar, URLQuery, and URLScan. On Jul 19, 2026 at 15:01 UTC, VirusTotal stored 14 positive engine results: alphaMountain.ai, BitDefender, Emsisoft, Forcepoint ThreatSeeker, Fortinet, G-Data, Gridinsoft, Kaspersky; the total engine count is unavailable or inconsistent; Google Safe Browsing flagged the domain: Social Engineering. Spamhaus DBL: DBL_PHISH on Jul 19, 2026 at 18:30 UTC. Cloudflare Radar classified the hostname as malicious and placed it in the phishing category; its verdict timestamp was not retained.

HTTP 502 was recorded on Aug 9, 2026 at 01:20 UTC; content was unavailable. Registration records for the domain list NameSilo, LLC as the registrar and Jul 18, 2026 as the creation date. At collection time, the hostname resolved to 66.55.66.105 on AS54913 (Kamatera, Inc.). The evidence archive retains 3 visual captures from PhishDestroy, URLScan, and URLQuery.

VirusTotal
VirusTotal
14 det.
URLQuery
URLQuery
3 threat alerts
رادار CF
ضار
ScamAdviser
Scamadviser
80/100
شهادة TLS
منتهية الصلاحية أو غير متحقق منها
العمر
21d Very New!
الحالة المرصودة
المحتوى غير متوفر 502
PhishDestroy
قائمة الإتلاف
مُدرج
Reports Sent
1
نطاق تغطية البيانات13 recorded checks
VirusTotal 14 detections · vendor total unavailable URLQuery 3 threat-system alerts PhishStats لم يتم التحقق منها OTX no community references رادار CF provider verdict: malicious URLScan capture التقرير المخزن URLScan verdict malicious حجب عناوين DNS لم يتم التحقق منها TLS منتهية الصلاحية أو غير متحقق منها WHOIS 21d old لقطة شاشة 3 captures · 3 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها Scamadviser 80/100
استخبارات أمن الشبكات Registrar context
Registrar context NameSilo
Stored registration data identifies NameSilo as the registrar. PhishDestroy maintains separate registrar investigations; that broader material is contextual and is not an independent detection for this domain.
Review source investigation
Threat Detection Systems 3 alerts
Detection System Indicator Verdict Alert
Cloudflare DNS msg-secure-esl.top malicious Sinkholed
OpenDNS msg-secure-esl.top phishing Phishing Block
DigiCert UltraDNS msg-secure-esl.top malicious Sinkholed
CF Cloudflare Radar Verdict ضار
Phishing
SSL Certificate Invalid
SSL certificate is invalid or expired. Issuer: msg-secure-esl.top

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
16/16
Sent Report Recorded
Stored sent-report record for registrar NameSilo, LLC, hosting provider, 2 abuse contacts
abuse@namesilo.comabuse@cloudwm.com
19/07/2026

حالة قوائم الحظر العامة

لقطة محفوظة

عنوان الصفحة
ESL Federal Credit Union - Log in
شهادة TLS
منتهية الصلاحية أو غير متحقق منها · صادرة عن msg-secure-esl.top · valid for 364 days

معلومات النطاق

النطاق
URLScan Verdict ضار score 100 Phishing brand: Eslfcu report ↗
Google Safe Browsing تم وضع علامة عليها Social engineering checked 19/07/2026
الخادم / ASN Apache · AS54913 Kamatera, Inc.
سمعة عنوان IP abuse score 0/100 0 reports checked 19/07/2026
مسجّل النطاق NameSilo US(US) PhishDestroy Investigation
جهة الإبلاغ عن إساءة الاستخدامabuse@namesilo.com, abuse@cloudwm.com
البحث في قاعدة بيانات WHOISICANN RDAP لـ msg-secure-esl.top →
عنوان IP 66.55.66.105 CA
الموقع الجغرافيCA Toronto, CA
الشبكةAS54913 · Cloud Web Manage
التسجيلتم إنشاؤه 18/07/2026 (21d · Very New!) Expires 18/07/2027
حالة HTTP502 Error
الوقت حتى أول تعذّر للوصول 7h
ما الذي نحتسبه الوقت المنقضي من أول تقرير عن إساءة الاستخدام المخزن إلى الملاحظة الأولى بأن المحتوى غير متوفر. هذا لا يحدد السبب.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف19/07/2026
DOM Analysisanalyzed 29/07/2026score 100/100
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://msg-secure-esl.top/
خوادم الأسماءns1.dnsowl.comns2.dnsowl.comns3.dnsowl.com
TLS Fingerprint
TLS Observationvalid from 18/07/2026scanned 19/07/2026
TLS SAN Domainsautoconfig.msg-secure-esl.topautodiscover.msg-secure-esl.topcpanel.msg-secure-esl.topcpcalendars.msg-secure-esl.topcpcontacts.msg-secure-esl.topmail.msg-secure-esl.topwebdisk.msg-secure-esl.topwebmail.msg-secure-esl.topwww.msg-secure-esl.top
Case ID
ICANN OVERSIGHT

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.
المراجع المتقاطعة لاستخبارات التهديدات · source references
ScamAdviser Public lookup
A public ScamAdviser lookup is available. Review its current score and warnings at the source; the existence of a lookup page is not itself a malicious verdict.
View on ScamAdviser
Live-fetched via CF worker proxy pool · cached 24h
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

14 detections recorded · vendor total unavailable
View on VT
Last analyzed
alphaMountain.ai
BitDefender
Emsisoft
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
كاسبرسكي
Lionic
نتكرافت
OpenPhish
SOCRadar
سوفوس
Webroot

الأدلة المؤرشفة

Wayback Machine Snapshot
لقطة تاريخية متاحة لمراجعة الأدلة
View Archive
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260719-941B79 Recipient: abuse@nic.top
Page title stored with report: ESL Federal Credit Union - Log in
Blocklist hits included with submission: OpenPhish
نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك
تضمين هذا التقريرRead-only HTML widget
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/msg-secure-esl.top"
  title="PhishDestroy threat report for msg-secure-esl.top"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

رسالة شكر صادقة جداً

منشئ مسودة ساخرة

المستلم
سياق الرسوم

مسودة ساخرة. أرقام الرسوم تقديرية، ولا ندّعي نسبتها بدقة إلى هذا النطاق.