multidefiprotocol-web[.]net
فحص التصيد والأمان للنطاق multidefiprotocol-web.net
“Even geduld...”
multidefiprotocol-web.net — المحتوى غير متوفر (HTTP 502). نوع الاحتيال: Crypto Scam. ملخص الأدلة: VT 2/93 (alphaMountain.ai, Gridinsoft); URLQuery 0; URLScan no malicious verdict; GSB no flag; BL 2 (MetaMask, SEAL); PD 71/100. مسجّل النطاق: Hostinger.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy first observed multidefiprotocol-web.net on Feb 3, 2026. Positive findings were recorded by VirusTotal, MetaMask, and SEAL. Evidence score: 71/100.
VirusTotal recorded 2 detections among 93 engines: alphaMountain.ai, Gridinsoft on Jun 26, 2026 at 23:35 UTC. The external blocklist snapshot contained 2 matches (MetaMask, SEAL) on Aug 7, 2026 at 14:20 UTC. URLQuery recorded no positive detection. Google Safe Browsing returned no flag on Jun 26, 2026 at 23:35 UTC. URLScan completed without a malicious verdict (score 0) on Feb 3, 2026 at 09:46 UTC.
HTTP 502 was recorded on Aug 7, 2026 at 01:20 UTC; content was unavailable. Registration records list HOSTINGER operations, UAB as the registrar. At collection time, the domain resolved to 172.67.157.190. Captured page title: “Even geduld...”. PhishDestroy classified the observed content as Crypto Scam. DOM analysis completed on Apr 10, 2026 at 23:23 UTC; stored DOM score 15/100. IoC extraction completed on Aug 2, 2026 at 04:14 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators.
Stored full analysis27/06/2026
This domain, multidefiprotocol-web.net, operates as a crypto drainer phishing site designed to compromise digital wallets by tricking users into disclosing sensitive credentials. The infrastructure targets individuals interacting with cryptocurrency platforms, employing deceptive interfaces that mimic legitimate services to initiate unauthorized transactions. Analysis of the page title, 'Even geduld...' (Dutch for 'Please wait...'), suggests an attempt to simulate a loading process, likely to delay user suspicion while malicious scripts execute in the background. Infrastructure analysis reveals multiple indicators of compromise. The domain was registered on February 21, 2026, through HOSTINGER operations, UAB, and currently resolves to the IP address 172.67.157.190. Security vendors on VirusTotal flagged the domain at a rate of 2/95, while it appears on three distinct security blocklists. Additional scrutiny shows the domain is blocked by at least three major threat intelligence feeds, further corroborating its malicious intent. The Gridinsoft trust score of 0/100 underscores its high-risk classification. Users who visited multidefiprotocol-web.net should immediately revoke any wallet permissions granted during the interaction and transfer remaining assets to a new, secure wallet. Monitor all connected accounts for unauthorized transactions and enable multi-factor authentication where available. If credentials were entered, assume they are compromised and update them across all platforms. Report the incident to relevant security teams and consider submitting the domain to additional threat intelligence platforms to aid in broader detection efforts.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
حصلت ICANN على أموالها. أما المساءلة فلم تصل.
بالنسبة إلى نطاق gTLD هذا، يعمل المسجّل المذكور أعلاه بموجب عقد مع ICANN. وتحصّل ICANN رسوماً سنوية ومتغيرة ورسومًا قائمة على المعاملات مرتبطة بعمليات التسجيل والتجديد والنقل.
الاعتماد: جرت الاستفادة منه مالياً. المساءلة: يُرجى التحقق مرة أخرى لاحقاً.
ثم يبدأ السحر: تكتب ICANN البند RAA §3.18، ويتولى المسجّل التحقيق في إساءة الاستخدام داخل قاعدة عملائه، ويقدّم الضحايا الأدلة مجاناً، بينما تنتظر كل طبقة أن يتحرك طرف آخر. إذا كان ذلك يجعل الضحايا يشعرون بمزيد من الأمان، فممتاز—لقد أدّت الفاتورة مهمتها.
الاستخبارات الجنائية الرقمية
تحليل VirusTotal
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
حول هذا التقرير: multidefiprotocol-web.net
يقدم هذا التقرير أحدث الأدلة المخزنة المتاحة لـ PhishDestroy. يتم عرض الطوابع الزمنية للمصدر حيثما كان ذلك متاحًا؛ يمكن أن تتغير أحكام التوفر والبائعين بعد التجميع.
عرض الموقع الذي تم التقاطه عنوان الصفحة “Even geduld...”.
اعتبارًا من 07/08/2026، كان لدى multidefiprotocol-web.net اكتشافات من محركات الأمان 2.
إذا كنت تعتقد أن هذه القائمة غير دقيقة، تقديم استئناف. للتعرف على منهجيتنا، قم بزيارة صفحة الأسئلة الشائعة.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب