الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 17. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

sterlingtrustfinancialcreditunion[.]com

“Home - Sterling trust financial credit Union”

حكم التهديد حرجة 100/100 درجة الأدلة
التوفر مغطى بعباءة · يمكن الوصول إليه تمت ملاحظة إمكانية الوصول من خلال عمليات فحص إخفاء الهوية
اكتشافات VirusTotal: 17/91 URLQuery threat systems: 1 alert انتحال العلامة التجارية: Genericbanking آخر نشاط معروف
OTX: 2 refs 10/06/2026 Genericbanking 1 Report Sent
ملخص التقرير

sterlingtrustfinancialcreditunion.com — مغطى بعباءة · يمكن الوصول إليه. انتحال العلامة التجارية: Genericbanking; نوع الاحتيال: Credential Phishing. ملخص الأدلة: VirusTotal 17/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, CyRadar); URLQuery 1 alert; URLScan malicious verdict; cloaking observed; PhishDestroy score 100/100. مسجّل النطاق: Dynadot.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
DFDC4A23
الدرجة
100/100

This domain, sterlingtrustfinancialcreditunion.com, is flagged as an active credential phishing site targeting financial institution credentials. Registered on June 6, 2026, through Dynadot Inc, it resolves to IP 162.245.237.212 (ASN associated with CENTRIOHOST-LLC, US). The domain is currently active, returning an HTTP 200 status and using a Let's Encrypt SSL certificate (YR1). It appears on one security blocklist and is detected in two AlienVault OTX threat intelligence pulses. Analysis of available data indicates 17 of 91 security vendors on VirusTotal flag the domain, though the specific detection logic is not detailed in the available intelligence. The page title, 'Home - Sterling trust financial credit Union,' suggests an attempt to mimic a legitimate credit union, though no confirmed brand impersonation has been verified beyond this title. Technologies detected on the domain include Tailwind CSS, LiteSpeed, Alpine.js, jsDelivr, JivoChat, and HTTP/3, which are consistent with modern web development practices but do not provide definitive attribution to a specific phishing kit. Defenders should treat this domain as high-risk for credential harvesting. Immediate actions include blocking the domain and IP at perimeter security controls, monitoring for internal connections to 162.245.237.212, and reviewing logs for any user interactions with the domain since its registration. The domain's recent creation and active status warrant continued vigilance, as phishing campaigns often evolve or shift infrastructure. No evidence currently suggests lateral movement or secondary payload delivery from this domain, but further analysis of connected infrastructure is recommended if internal access is detected.

VirusTotal
VirusTotal
17 det.
URLQuery
URLQuery
1 threat alert
OTX references
Gridinsoft
44/100
شهادة TLS
Let's Encrypt
العمر
2 mo New
الحالة المرصودة
مغطى بعباءة · يمكن الوصول إليه
PhishDestroy
قائمة الإتلاف
مُدرج
Reports Sent
1
نطاق تغطية البيانات VirusTotal 17 / 91 URLQuery 1 threat-system alert PhishStats لم يتم التحقق منها OTX 2 community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict malicious حجب عناوين DNS لم يتم التحقق منها TLS valid certificate, 70d WHOIS 2 mo old لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها Gridinsoft 44/100
استخبارات أمن الشبكات
Threat Detection Systems 1 alert
Detection System Indicator Verdict Alert
DNS4EU sterlingtrustfinancialcreditunion.com malicious Sinkholed

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
13/14

حالة قوائم الحظر العامة

لقطة محفوظة

عنوان الصفحة
Home - Sterling trust financial credit Union
شهادة TLS
Valid transport encryption · صادرة عن Let's Encrypt · valid for 70 days

معلومات النطاق

النطاق
URLScan Verdict ضار score 100 Phishing report ↗
الخادم / ASN LiteSpeed · AS27323 Wowrack.com
سمعة عنوان IP abuse score 0/100 0 reports checked 13/07/2026
مسجّل النطاق Dynadot US(US)
عنوان IP 162.245.237.212 US
الموقع الجغرافيUS Tukwila, US
الشبكةAS27323 · CENTRIOHOST-LLC
التسجيلتم إنشاؤه 06/06/2026 (71d · New) Expires 06/06/2027
Cloaking Cloaking Detected Content divergence · score 1/6
unavailable: raw=proxy_error; http=0; via=http_proxy; error=HTTPConnectionPool(host='198.144.190.254', port=6101): Max retries exceeded with url: http://sterlingtrustfinancialcredi
checked 15/08/2026
Elapsed Since First Report 8 days
ما الذي نحتسبه Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: مغطى بعباءة · يمكن الوصول إليه.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف10/06/2026
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttps://sterlingtrustfinancialcreditunion.com/
TLS Fingerprint
TLS Observationvalid from 06/06/2026scanned 13/06/2026
TLS SAN Domainsiqinvestbroker.comiqinvestbroker.com.sterlingtrustfinancialcreditunion.comwww.iqinvestbroker.com.sterlingtrustfinancialcreditunion.com
Favicon Hash
Case ID
ICANN OVERSIGHT

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.
التقنيات · 6 identified
Tailwind CSS
UI frameworks

Tailwind is a utility-first CSS framework.

tailwindcss.com ثقة 100٪
LiteSpeed
Web servers

LiteSpeed is a high-scalability web server.

litespeedtech.com ثقة 100٪
Alpine.js
JavaScript frameworks

JavaScript / web framework used to build the site.

github.com 75% confidence
jsDelivr
CDN

JSDelivr is a free public CDN for open-source projects. It can serve web files directly from the npm registry and GitHub repositories without any configuration.

www.jsdelivr.com ثقة 100٪
JivoChat
Live chat

JivoChat is a live chat solution for websites offering customizable web and mobile chat widgets.

www.jivosite.com ثقة 100٪
HTTP/3
Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

httpwg.org ثقة 100٪
Detected via رادار Cloudflare · Wappalyzer engine
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

17 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed Previous stored snapshot: 17 detections
alphaMountain.ai
BitDefender
Chong Lua Dao
CRDF
CyRadar
ESET
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
كاسبرسكي
Lionic
نتكرافت
SOCRadar
سوفوس
VIPRE
desenmascara.me
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of sterlingtrustfinancialcreditunion.com · checked Jun 10, 2026

49
Poor
Performance
FCP
6.01s
First Contentful Paint
LCP
8.63s
Largest Contentful Paint
CLS
0.002
Cumulative Layout Shift
TBT
461ms
Total Blocking Time
SI
6.01s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

الأدلة والتقارير الخارجية

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260609-E5B995 Recipient: abuse@dynadot.com
Page title stored with report: Home - Sterling trust financial credit Union
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 1,373.0 KB
نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/sterlingtrustfinancialcreditunion.com"
  title="PhishDestroy threat report for sterlingtrustfinancialcreditunion.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

رسالة شكر صادقة جداً

منشئ مسودة ساخرة

المستلم
سياق الرسوم

مسودة ساخرة. أرقام الرسوم تقديرية، ولا ندّعي نسبتها بدقة إلى هذا النطاق.