الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 12. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

simon-fidan[.]nl

حكم التهديد حرجة 98/100 درجة الأدلة
التوفر لم يتم التحقق منها لم يتم التحقق من إمكانية الوصول الحالية
اكتشافات VirusTotal: 12/93 URLQuery threat systems: 5 alerts نوع الاحتيال: Credential Phishing
OTX: 13 refs 26/02/2026
ملخص التقرير

simon-fidan.nl — لم يتم التحقق منها. نوع الاحتيال: Credential Phishing. ملخص الأدلة: VirusTotal 12/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); URLQuery 5 alerts; PhishDestroy score 98/100. مسجّل النطاق: Realtime Register.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
C7B73582
الدرجة
98/100

This domain, simon-fidan.nl, is identified as a credential harvesting phishing site designed to mimic legitimate login portals and capture user credentials. Analysis indicates no direct association with a specific brand or drainer kit, though the infrastructure aligns with common phishing frameworks leveraging Let’s Encrypt SSL certificates for perceived legitimacy. The domain exhibits characteristics typical of large-scale phishing campaigns, including rapid deployment and short operational lifespans before takedowns. Infrastructure analysis reveals the following technical indicators: the domain resolves to the IPv6 address 2a10:b5c1:119::1, hosted on a Netherlands-based network (AS60781, LeaseWeb Netherlands B.V.). It was registered on February 21, 2026, through Realtime Register, an uncommon future date suggesting potential data manipulation or a placeholder in threat intelligence feeds. The SSL certificate is issued by Let’s Encrypt (serial number E7), a frequent choice for phishing sites due to its free and automated issuance process. At the time of assessment, the domain was flagged by 12 out of 95 security vendors on VirusTotal, with additional listings on two security blocklists, including PhishDestroy and PhishingDB. Google Safe Browsing (GSB) status is not explicitly provided but is inferred as blocked given the offline status. The domain is currently offline, likely due to takedown actions by hosting providers or registrars following abuse reports. However, the elevated risk level persists due to the domain’s recent creation and historical phishing activity. Organizations and end-users are advised to block the domain and its associated IP address at the network level. Security teams should monitor for related domains registered through the same registrar or resolving to the same IP space, as threat actors often reuse infrastructure. Users who may have interacted with the domain are urged to reset credentials for any accounts accessed during the exposure window and enable multi-factor authentication where available. Continuous vigilance is recommended, as phishing campaigns frequently rotate domains and IPs to evade detection.

VirusTotal
VirusTotal
12 det.
URLQuery
URLQuery
5 threat alerts
OTX references
شهادة TLS
منتهية الصلاحية أو غير متحقق منها -123d
العمر
6 mo
الحالة المرصودة
لم يتم التحقق منها
PhishDestroy
قائمة الإتلاف
مُدرج
نطاق تغطية البيانات VirusTotal 12 / 93 URLQuery 5 threat-system alerts PhishStats لم يتم التحقق منها OTX 13 community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict اكتمل التحليل حجب عناوين DNS 15 تم الفحص — لا يوجد حظر TLS منتهية الصلاحية أو غير متحقق منها WHOIS 6 mo old لقطة شاشة 3 captures · 3 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكات
Threat Detection Systems 5 alerts
Detection System Indicator Verdict Alert
Quad9 DNS simon-fidan.nl malicious Sinkholed
OpenDNS simon-fidan.nl phishing Phishing Block
CIRA Canadian Shield DNS simon-fidan.nl malicious Sinkholed
OpenPhish simon-fidan.nl phishing Phishing - Office365
DNS0 Zero simon-fidan.nl malicious Sinkholed

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
12/14

حالة قوائم الحظر العامة

لقطة محفوظة

معلومات النطاق

النطاق
URLScan Verdict اكتمل التحليل score 0 report ↗
الخادم / ASN LiteSpeed · AS60781 LEASEWEB-NL-AMS-01 LeaseWeb Netherlands B.V., NL
سمعة عنوان IP 1 report
مسجّل النطاق Realtime Register NL(NL)
جهة الإبلاغ عن إساءة الاستخدامabuse@realtimeregister.com
البحث في قاعدة بيانات WHOISICANN RDAP لـ simon-fidan.nl →
عنوان IP 2a10:b5c1:119::1 NL
الموقع الجغرافيNL Lelystad, NL
الشبكةAS60781 · LeaseWeb Netherlands B.V.
التسجيلتم إنشاؤه 21/02/2026 (175d)
Elapsed Since First Report 132 days
ما الذي نحتسبه Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: لم يتم التحقق منها.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف26/02/2026
DOM Analysisanalyzed 28/07/2026score 98/100
IoC Extractionscanned 02/08/20260 wallet · 0 Telegram IoCs
خوادم الأسماءns1.site.eu
TLS Fingerprint
TLS Observationvalid from 15/01/2026scanned 15/03/2026
TLS SAN Domainsda019.site.eu
شهادة TLS
منتهية الصلاحية أو غير متحقق منها · صادرة عن Let's Encrypt / E7
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

12 / قام موردو الأمان 93 بوضع علامة على هذا المجال
View on VT
Last analyzed
ADMINUSLabs
alphaMountain.ai
BitDefender
CyRadar
ESET
Fortinet
G-Data
Lionic
SOCRadar
سوفوس
VIPRE
Webroot
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of simon-fidan.nl · checked Mar 2, 2026

100
Good
Performance
FCP
0.75s
First Contentful Paint
LCP
0.75s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
0.75s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

الأدلة والتقارير الخارجية

نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/simon-fidan.nl"
  title="PhishDestroy threat report for simon-fidan.nl"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>