my-safepal[.]at
“www.www.my-safepal.at”
my-safepal.at — لم يتم التحقق منها. انتحال العلامة التجارية: SafePal; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 14/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); Spamhaus DBL_SPAM; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 92/100. مسجّل النطاق: Hosting concepts.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain, my-safepal.at, is flagged as a high-risk brand impersonation targeting SafePal, a cryptocurrency wallet provider. Analysis indicates the domain was designed to mimic legitimate SafePal services, likely to deceive users into disclosing sensitive credentials or interacting with malicious smart contracts. No direct evidence of a crypto drainer kit was observed, but the domain’s structure and timing align with known impersonation campaigns targeting crypto asset holders. The page title 'Welcome' suggests a generic landing page, potentially serving as a gateway to more sophisticated credential harvesting or wallet-drainage mechanisms. Infrastructure analysis reveals the domain was registered through Hosting Concepts B.V. (Registrar.eu) and resolved to the IP address 188.114.96.3. VirusTotal detection metrics show 15 out of 95 security vendors flagging the domain as malicious, while it appears on three distinct security blocklists. The domain’s Gridinsoft trust score is 0/100, reinforcing its high-risk classification. AlienVault OTX records indicate the domain was included in two threat intelligence pulses, further corroborating its association with malicious activity. No Google Safe Browsing (GSB) status was provided, but the domain’s offline status suggests mitigation efforts may have been successful. The domain is currently offline, reducing immediate exposure risk. However, residual threats persist due to its prior inclusion in threat intelligence feeds and blocklists. Organizations should monitor for re-registration attempts or shifts in hosting infrastructure. Users who interacted with the domain are advised to revoke any connected wallet permissions, rotate credentials, and scan for unauthorized transactions. Security teams should update blocklists to include the domain and associated IP, while remaining vigilant for similar impersonation attempts targeting crypto-related services.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تحليل VirusTotal
الأدلة والتقارير الخارجية
“my-safepal.at gf@nic.at service@nic.at registrar@nic.at recht@nic.at support@safepal.com legal@safepal.com security@safepal.io support@safepal.io reportphishing@apwg.org tech-nic-at@nic.at report@openphish.com abuse@namecheaphosting.com abuse-reports@cloudzy.com abuse@play2go.cloud abuse@inios.fi ripe@interlir.com abuse@intezio.net abuse@nodehost.ru abuse@h2.nexus report@abuseradar.com abuse@dnspod.com xueying@dnspod.com https://abuse.cloudflare.com/phishing https://safepalsupport.zendesk.com/hc”
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب