الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 3. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

shipments-opensea[.]idcapital[.]top

“Google”

حكم التهديد حرجة 88/100 درجة الأدلة
التوفر مغطى بعباءة · يمكن الوصول إليه تمت ملاحظة إمكانية الوصول من خلال عمليات فحص إخفاء الهوية
اكتشافات VirusTotal: 3/91 انتحال العلامة التجارية: OpenSea آخر نشاط معروف
06/05/2026 OpenSea
ملخص التقرير

shipments-opensea.idcapital.top — مغطى بعباءة · يمكن الوصول إليه (HTTP 502). انتحال العلامة التجارية: OpenSea; نوع الاحتيال: Nft Scam. ملخص الأدلة: VirusTotal 3/91 (ChainPatrol, LevelBlue, Seclookup); cloaking observed; PhishDestroy score 88/100. مسجّل النطاق: PDR.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
A7220C56
الدرجة
88/100

PhishDestroy identifies shipments-opensea.idcapital.top as a malicious domain posing as OpenSea to facilitate crypto drainer operations. This site is engineered to deceive users by mimicking the legitimate OpenSea platform, tricking visitors into connecting cryptocurrency wallets under the guise of shipment verification or transaction processing. Once a wallet connection is established, the threat actor silently drains assets through smart contract interactions, leaving victims with significant financial losses without immediate awareness. The operational window of this domain extends from its creation date of December 10, 2020, indicating sustained malicious activity over several years.

Technical analysis confirms the elevated risk profile of this domain. According to VirusTotal, only 1 out of 95 security vendors flagged this domain as malicious as of the latest scan, highlighting a critical gap in widespread detection coverage. The domain was registered through PDR Ltd. d/b/a PublicDomainRegistry.com, a registrar frequently associated with bulk domain acquisitions used in malicious campaigns. It resolves to IP address 50.31.176.165 and utilizes a Let's Encrypt SSL certificate to appear legitimate. Notably, this domain has been flagged and blocked by prominent security tools including MetaMask and SEAL, reinforcing its malicious classification. The combination of brand impersonation, cryptocurrency targeting, and evasion techniques results in an elevated risk rating.

If you have visited shipments-opensea.idcapital.top, immediately disconnect your wallet from the site and revoke any unauthorized permissions through your wallet’s connected app interface. Do not interact with any further prompts or pop-ups from this domain. Scan your device using updated antivirus software and consider rotating wallet credentials if suspicious transactions are detected. Report the incident to your wallet provider and relevant cryptocurrency platforms. Enable multi-factor authentication on all crypto-related accounts and avoid clicking links from unsolicited messages or emails. Stay vigilant for unusual transaction confirmations or unauthorized asset transfers, and consult your organization’s security team if this domain appeared in a corporate context.

VirusTotal
VirusTotal
3 det.
DNS Security
2/14
شهادة TLS
Let's Encrypt
العمر
4 mo
الحالة المرصودة
مغطى بعباءة · يمكن الوصول إليه 502
PhishDestroy
قائمة الإتلاف
مُدرج
نطاق تغطية البيانات VirusTotal 3 / 91 URLQuery لم يتم التحقق منها PhishStats checked — no match recorded OTX no community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict اكتمل التحليل حجب عناوين DNS 2/14 TLS valid certificate, 43d WHOIS 4 mo old لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكات
DNS Provider Blocks 2 / 14
Brand Opensea Quad9 Secure

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
11/13

حالة قوائم الحظر العامة

لقطة محفوظة

عنوان الصفحة
Google
شهادة TLS
Valid transport encryption · صادرة عن Let's Encrypt · valid for 43 days

معلومات النطاق

النطاق
URLScan Verdict اكتمل التحليل score 0 report ↗
الخادم / ASN gws · AS23352 DEFT.COM
سمعة عنوان IP abuse score 0/100 0 reports checked 13/07/2026
Registrar (base domain) PDR IN(IN)
عنوان IP 50.31.176.165 US
الموقع الجغرافيUS Chicago, US
الشبكةAS23352 · DEFT.COM
Registration (base domain)idcapital.top · تم إنشاؤه 06/05/2026 (106d)
حالة HTTP502 Error
Cloaking Cloaking Detected Bot redirect safe · score 4/6
transient_502: raw=transient_502; http=502; via=http_proxy
checked 19/08/2026
Elapsed Since First Report 63 days
ما الذي نحتسبه Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: مغطى بعباءة · يمكن الوصول إليه.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف06/05/2026
IoC Extractionscanned 01/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://shipments-opensea.idcapital.top/
خوادم الأسماءns1.domitec-peru.com.
TLS Fingerprint
TLS Observationvalid from 20/03/2026scanned 13/05/2026
TLS SAN Domainswww.dashboard-opensea.idcapital.topwww.foundation-opensea.idcapital.topwww.id-handel.idcapital.topwww.shipments-opensea.idcapital.top
ICANN OVERSIGHT Registration: idcapital.top

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For the registrable domain idcapital.top behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.
التقنيات · 3 identified
Google Web Server
Web servers

Web server software.

en.wikipedia.org ثقة 100٪
HSTS
الأمن

HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.

www.rfc-editor.org ثقة 100٪
HTTP/3
Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

httpwg.org ثقة 100٪
Detected via رادار Cloudflare · Wappalyzer engine
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

3 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed
ChainPatrol
LevelBlue
Seclookup
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of shipments-opensea.idcapital.top · checked May 6, 2026

70
Needs Work
Performance
FCP
2.33s
First Contentful Paint
LCP
2.39s
Largest Contentful Paint
CLS
0.023
Cumulative Layout Shift
TBT
1294ms
Total Blocking Time
SI
2.95s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

الأدلة والتقارير الخارجية

نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/shipments-opensea.idcapital.top"
  title="PhishDestroy threat report for shipments-opensea.idcapital.top"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

رسالة شكر صادقة جداً

منشئ مسودة ساخرة

المستلم
سياق الرسوم

مسودة ساخرة. أرقام الرسوم تقديرية، ولا ندّعي نسبتها بدقة إلى هذا النطاق.