nighixw[.]vip
“Nachtliebe”
nighixw.vip — لم يتم التحقق منها. نوع الاحتيال: Generic Phishing. ملخص الأدلة: VirusTotal 2/91 (alphaMountain.ai, Gridinsoft); PhishDestroy score 81/100. مسجّل النطاق: Gname.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Analysis of the domain nighixw.vip indicates it is actively hosting a phishing site targeting users of a dating or adult-content platform, as suggested by the page title 'Nachtliebe.' The domain was registered on September 8, 2025, through Gname.com Pte. Ltd., and currently resolves to the IP address 35.240.219.19. Infrastructure analysis reveals the use of Vue.js and Nginx, alongside HSTS implementation, which may be employed to lend an appearance of legitimacy or to evade certain security controls. The domain is flagged on two security blocklists and appears in 23 threat intelligence pulses on AlienVault OTX, indicating prior detection by security researchers. Three of 95 security vendors on VirusTotal have classified this domain as malicious. The SSL certificate is issued by Let's Encrypt, a common choice for both legitimate and malicious sites due to its accessibility. The domain's trust score is 0/100, further supporting its classification as high-risk. At present, the exact content and mechanics of the phishing scheme remain unconfirmed, as the site has not been directly analyzed. However, the combination of a suggestive page title, recent registration, and presence on multiple threat intelligence platforms suggests an active campaign. Defenders should treat this domain as hostile and block it at the DNS or proxy level. Monitoring for connections to 35.240.219.19 or related infrastructure may help identify compromised endpoints. Additional investigation into the site's content and payloads is recommended to determine the precise nature of the threat.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات · 3 identified
Progressive JavaScript framework for building user interfaces.
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
تحليل VirusTotal
الأدلة المؤرشفة
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of nighixw.vip · checked Jul 12, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب