الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 10. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

ovv[.]pap[.]temporary[.]site

“Not Acceptable!”

حكم التهديد حرجة 100/100 درجة الأدلة
التوفر مغطى بعباءة · يمكن الوصول إليه تمت ملاحظة إمكانية الوصول من خلال عمليات فحص إخفاء الهوية
اكتشافات VirusTotal: 10/91 انتحال العلامة التجارية: Onedrive آخر نشاط معروف
08/04/2026 Onedrive
ملخص التقرير

ovv.pap.temporary.site — مغطى بعباءة · يمكن الوصول إليه. انتحال العلامة التجارية: Onedrive; نوع الاحتيال: Generic Phishing. ملخص الأدلة: VirusTotal 10/91 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, CyRadar, Dr.Web); URLScan malicious verdict; cloaking observed; PhishDestroy score 100/100. مسجّل النطاق: eNom.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
24C25D79
الدرجة
100/100

PhishDestroy identifies ovv.pap.temporary.site as an active credential harvesting phishing domain. The domain is currently operational and poses a severe risk to users through deceptive tactics aimed at stealing login credentials. No specific brand impersonation has been confirmed in the available intelligence, but the domain’s structure and behavior align with generic phishing campaigns designed for unauthorized data capture. This domain was flagged by 10 of 95 VirusTotal security vendors, indicating widespread recognition of its malicious nature. It was registered through ENOM, INC., resolves to IP address 50.6.252.207, and was created on August 04, 2023. Additionally, the domain appears on 3 security blocklists, including OpenPhish, PhishingArmy, and OISD. The domain holds an SSL certificate issued by Let's Encrypt, which may falsely imply legitimacy to unsuspecting users. Given its high-risk classification and active status, users must avoid interacting with ovv.pap.temporary.site or any associated subdomains. The presence of an SSL certificate suggests the operators are leveraging trust cues to enhance credibility, making it critical to verify URLs manually before entering sensitive information. Users should also ensure their devices are protected by updated antivirus software and report any suspected interactions with this domain to their security teams or relevant cybersecurity authorities. Network administrators are advised to block the domain and its associated IP address to prevent access within their environments.

VirusTotal
VirusTotal
10 det.
DNS Security
6/12
شهادة TLS
Let's Encrypt
العمر
4 mo
الحالة المرصودة
مغطى بعباءة · يمكن الوصول إليه
PhishDestroy
قائمة الإتلاف
مُدرج
نطاق تغطية البيانات VirusTotal 10 / 91 URLQuery تم تخزين التقرير - الحكم التفصيلي معلق PhishStats checked — no match recorded OTX no community references رادار CF no data URLScan capture التقرير المخزن URLScan verdict malicious حجب عناوين DNS 6/12 TLS valid certificate, 43d WHOIS 4 mo old لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكات
DNS Provider Blocks 6 / 12
Adguard Default Adguard Family Controld Adblock Controld Family Controld Malware Quad9 Secure

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
11/13

حالة قوائم الحظر العامة

لقطة محفوظة

عنوان الصفحة
Not Acceptable!
شهادة TLS
Valid transport encryption · صادرة عن Let's Encrypt · valid for 43 days

معلومات النطاق

النطاق
URLScan Verdict ضار score 100 Phishing brand: Onedrivebrand: Genericemail report ↗
الخادم / ASN Apache · AS31898 Oracle Corporation
سمعة عنوان IP abuse score 0/100 0 reports checked 13/08/2026
Registrar (base domain) eNom
جهة الإبلاغ عن إساءة الاستخدامabuse@enom.com
البحث في قاعدة بيانات WHOISICANN RDAP لـ temporary.site →
عنوان IP 50.6.252.207 US
الموقع الجغرافيUS Ashburn, US
الشبكةAS31898 · Oracle Corporation
Registration (base domain)temporary.site · تم إنشاؤه 08/04/2026 (127d)
Cloaking Cloaking Detected Content divergence · score 1/6
unavailable: raw=proxy_error; http=0; via=http_proxy; error=HTTPConnectionPool(host='46.203.96.182', port=6306): Max retries exceeded with url: http://ovv.pap.temporary.site/ (Caus
checked 13/08/2026
Elapsed Since First Report 36 days
ما الذي نحتسبه Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: مغطى بعباءة · يمكن الوصول إليه.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف08/04/2026
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://ovv.pap.temporary.site/grovce
خوادم الأسماءns2.temporary.site
MX Records0 mail.ovv.pap.temporary.site
TLS Fingerprint
TLS Observationvalid from 20/02/2026scanned 09/04/2026
TLS SAN Domainsautodiscover.ovv.pap.temporary.sitecpanel.ovv.pap.temporary.sitecpcalendars.ovv.pap.temporary.sitecpcontacts.ovv.pap.temporary.sitegrvioces.commail.grvioces.commail.ovv.pap.temporary.sitewebdisk.ovv.pap.temporary.sitewebmail.ovv.pap.temporary.sitewww.grvioces.comwww.ovv.pap.temporary.site
ICANN OVERSIGHT Registration: temporary.site

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For the registrable domain temporary.site behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

10 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed Previous stored snapshot: 12 detections
ADMINUSLabs
alphaMountain.ai
Chong Lua Dao
CyRadar
Dr.Web
Fortinet
Gridinsoft
Lionic
VIPRE
Webroot
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of ovv.pap.temporary.site · checked Apr 8, 2026

74
Needs Work
Performance
FCP
2.19s
First Contentful Paint
LCP
4.68s
Largest Contentful Paint
CLS
0.136
Cumulative Layout Shift
TBT
37ms
Total Blocking Time
SI
3.96s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

الأدلة والتقارير الخارجية

نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/ovv.pap.temporary.site"
  title="PhishDestroy threat report for ovv.pap.temporary.site"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

رسالة شكر صادقة جداً

منشئ مسودة ساخرة

المستلم
سياق الرسوم

مسودة ساخرة. أرقام الرسوم تقديرية، ولا ندّعي نسبتها بدقة إلى هذا النطاق.