الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 12. قوائم الحظر العامة التي تبلغ عن تطابق: 2. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

rebby[.]com[.]mx

فحص التصيد والأمان للنطاق rebby.com.mx

“Attention Required! | Cloudflare”

حكم التهديد حرجة 100/100 درجة الأدلة
التوفر يمكن الوصول إليها · الوصول مقيد استجابة يمكن الوصول إليها؛ لم يتم التحقق من محتوى الصفحة
إشارات الخطر
اكتشافات VirusTotal: 12/91 Spamhaus DBL: DBL_PHISH تطابقات القائمة السوداء المخزنة: 2 انتحال العلامة التجارية: Rabby آخر نشاط معروف
12/91 VT OTX: 2 refs Cloudflare Banned 09/06/2026 2 Blocklists Rabby Brand Impersonation LU LU
ملخص التقرير

rebby.com.mx — يمكن الوصول إليها · الوصول مقيد (HTTP 403). انتحال العلامة التجارية: Rabby; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 12/91 (alphaMountain.ai, Chong Lua Dao, CRDF, CyRadar, Forcepoint ThreatSeeker); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 100/100. مسجّل النطاق: Registrar.eu.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
2403080B
الدرجة
100/100

This domain rebby.com.mx is currently active and has been classified as a brand‑impersonation campaign targeting the Rabby brand. Registration was performed through Registrar.eu, and the authoritative name servers are ns1.openprovider.nl, ns2.openprovider.be, and ns3.openprovider.eu, indicating the use of the OpenProvider hosting platform. The site enforces HTTP Strict Transport Security (HSTS) and presents a TLS certificate issued by Let’s Encrypt (certificate type YR1), confirming that the connection is encrypted but does not mitigate the underlying abuse. When accessed, the HTTP response returns status code 403 and the page title displayed is “Attention Required! | Cloudflare”, suggesting that Cloudflare is being used as a front‑end protection layer, yet the underlying content remains undisclosed.

Infrastructure analysis shows the domain resolves to IP address 198.251.89.127, which is allocated to FranTech Solutions in Luxembourg. The same IP appears on three public security blocklists and has been flagged by PhishDestroy, MetaMask, and SEAL, indicating that multiple threat‑intelligence sources have already taken protective action. VirusTotal reports that 12 out of 91 scanning engines flag the domain, providing additional independent confirmation of malicious intent. AlienVault OTX lists the domain in two separate threat‑intel pulses, and the overall Gridinsoft trust score is 0 out of 100, reinforcing the high‑risk assessment.

Evidence points to a coordinated impersonation effort rather than an accidental misconfiguration. While the exact phishing landing page cannot be verified because the content behind the Cloudflare challenge is not publicly revealed, the combination of brand targeting, hostile infrastructure, multiple vendor detections, and blocklist listings provides a strong indication of fraudulent activity. Defenders should block rebby.com.

VirusTotal
VirusTotal
12 det.
OTX references
شهادة TLS
Let's Encrypt
الحالة المرصودة
يمكن الوصول إليها · الوصول مقيد 403
PhishDestroy
قائمة الإتلاف
مُدرج
نطاق تغطية البيانات VirusTotal 12 / 91 URLQuery لم يتم التحقق منها PhishStats لم يتم التحقق منها OTX 2 community references رادار CF scan completed URLScan capture not submitted URLScan verdict التقييم غير متاح حجب عناوين DNS 14 تم الفحص — لا يوجد حظر TLS valid certificate, 83d WHOIS not parsed لقطة شاشة لم يتم تسجيله سلسلة إعادة التوجيه لم يتم التحقيق فيها

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
9/11

حالة قوائم الحظر العامة

معلومات النطاق

النطاق
الخادم / ASN wd · AS53667 FranTech Solutions
سمعة عنوان IP abuse score 30/100 32 reports checked 13/07/2026
مسجّل النطاق Registrar.eu
عنوان IP 198.251.89.127 LU
الموقع الجغرافيLU Luxembourg, LU
الشبكةAS53667 · FranTech Solutions
حالة HTTP403 Forbidden
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف09/06/2026
Submitted URLhttp://rebby.com.mx/
خوادم الأسماءns3.openprovider.eu
TLS Fingerprint
TLS Observationvalid from 02/06/2026scanned 13/06/2026
التقنيات · 1 identified
HSTS
الأمن

HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.

www.rfc-editor.org ثقة 100٪
Detected via رادار Cloudflare · Wappalyzer engine
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

12 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed
alphaMountain.ai
Chong Lua Dao
CRDF
CyRadar
Forcepoint ThreatSeeker
Fortinet
Gridinsoft
كاسبرسكي
LevelBlue
Lionic
SOCRadar
سوفوس
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of rebby.com.mx · checked Jun 9, 2026

100
Good
Performance
FCP
0.76s
First Contentful Paint
LCP
0.76s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
2.19s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

الأدلة والتقارير الخارجية

نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/rebby.com.mx"
  title="PhishDestroy threat report for rebby.com.mx"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>