tfjg-rjgu-edri-zcgw-osrg-rfgj[.]netlify[.]app
“Site not found”
tfjg-rjgu-edri-zcgw-osrg-rfgj.netlify.app — المحتوى غير متوفر. ملخص الأدلة: VirusTotal 9/95 (alphaMountain.ai, BitDefender, CRDF, CyRadar, Fortinet); PhishDestroy score 77/100. مسجّل النطاق: Netlify.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Analysis of tfjg-rjgu-edri-zcgw-osrg-rfgj.netlify.app, observed on July 24, 2026, indicates the domain was provisioned on Netlify and is currently offline, returning HTTP 404 with page title “Site not found”. The site employed Netlify hosting and advertised HSTS, and the TLS certificate presented is DigiCert Global G2 TLS RSA SHA256 2020 CA1, issued by DigiCert Inc. DNS resolution points to IP 98.84.224.111, which belongs to AS14618 Amazon.com, Inc., located in the United States. The domain appears on a single security blocklist and has been explicitly blocked by PhishDestroy.
VirusTotal scans show nine of ninety‑five AV engines flagged the domain, reinforcing the suspicion of malicious use. No further content was retrieved, and nameserver information is unavailable. The limited visible evidence suggests the domain was created for a generic phishing campaign, but the exact target, payload, or phishing kit cannot be confirmed from the current data set.
Defenders should continue to monitor network traffic for connections to 98.84.224.111 and enforce blocking of the fully qualified domain name at perimeter and DNS filtering layers. Adding the domain to internal blocklists and sharing the indicator with threat‑intelligence feeds will reduce exposure. Because the site is offline, active exploitation is unlikely, yet the infrastructure—particularly the Netlify‑hosted front end and Amazon‑owned IP—may be reused for future campaigns, so periodic re‑resolution checks are advisable.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 2 identified
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com ثقة 100٪HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org ثقة 100٪تحليل VirusTotal
الأدلة المؤرشفة
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب