الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 19. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

vctlegacy[.]com

فحص التصيد والأمان للنطاق vctlegacy.com

“Valorant Limited Edition Wiki”

حكم التهديد حرجة 100/100 درجة الأدلة
التوفر المحتوى غير متوفر لم يكن المحتوى متاحًا في الملاحظة الأخيرة
إشارات الخطر
اكتشافات VirusTotal: 19/94 انتحال العلامة التجارية: Netflix
19/94 VT URLQuery: 2 detections OTX: 1 ref 28/03/2026 غير متاح منذ 10/04/2026 Netflix 131d to unavailable BZ BZ
ملخص التقرير

vctlegacy.com — المحتوى غير متوفر (HTTP 502). انتحال العلامة التجارية: Netflix. ملخص الأدلة: VT 19/94 (ADMINUSLabs, alphaMountain.ai, CRDF, CyRadar, ESET); URLQuery 2 det.; URLScan no malicious verdict; GSB no flag; BL 0; CF Radar malicious; PD 100/100. مسجّل النطاق: NiceNIC.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
1A876C20
الدرجة
100/100

vctlegacy.com entered the PhishDestroy evidence set on Mar 28, 2026. Stored content metadata identifies Netflix as the apparent target. Content analysis also recorded brand signals for Riot games and Valorant. The assembled evidence scores 100/100 (critical).

Three independent sources are positive: VirusTotal, Cloudflare Radar, and URLQuery. VirusTotal recorded 19 detections among 94 engines: ADMINUSLabs, alphaMountain.ai, CRDF, CyRadar, ESET, Emsisoft, Forcepoint ThreatSeeker, Fortinet, Gridinsoft, LevelBlue, Lionic, Mimecast, Netcraft, Seclookup, SOCRadar, Sophos, VIPRE, Webroot, malwares.com URL checker on Mar 28, 2026 at 05:03 UTC. Cloudflare Radar classified the hostname as malicious and assigned the categories phishing, security threats, and security risks; its verdict timestamp was not retained. URLQuery recorded 2 detections. The evidence is not unanimous. AlienVault OTX listed 1 community pulse reference (not vendor detections) on Mar 30, 2026 at 07:09 UTC. The external blocklist snapshot contained no matches on Aug 7, 2026 at 18:20 UTC. Google Safe Browsing returned no flag on Mar 28, 2026 at 07:00 UTC. URLScan completed without a malicious verdict (score 0).

HTTP 502 was recorded on Aug 7, 2026 at 01:37 UTC; content was unavailable. Latest classified outcome: registration hold observed; cause registrar client hold; mechanism client hold; observed actor NICENIC INTERNATIONAL GROUP CO., LIMITED on Aug 7, 2026 at 02:29 UTC. Registration records for the domain list NICENIC INTERNATIONAL GROUP CO., LIMITED as the registrar and Mar 27, 2026 as the creation date. Registration preceded first observation by 0 days. At collection time, the hostname resolved to 186.2.171.13 on AS59692 (IQWeb FZ-LLC). The associated network metadata labels the endpoint as Iqweb LLC in Belmopan, BZ. The stored server header is ddos-guard. Captured page title: “Valorant Limited Edition Wiki”. DOM analysis completed on Jul 29, 2026 at 04:03 UTC; stored DOM score 0/100. The evidence archive retains 2 visual captures from PhishDestroy and URLScan. IoC extraction completed on Aug 1, 2026 at 04:19 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators. TLS metadata lists Let's Encrypt / R13 as the certificate issuer with validity through Jun 11, 2026; checked Mar 28, 2026 at 08:14 UTC.

The 0/100 DOM score means that the DOM pass stored no scored indicators; it does not negate the independent source findings. Taken together, the page content and independent findings support classifying this hostname as Netflix impersonation and phishing. The stored record does not establish the post-click interaction, and it does not claim a confirmed wallet-draining transaction or credential submission.

VirusTotal
VirusTotal
19 det.
URLQuery
URLQuery
2 det.
OTX references
رادار CF
ضار
Gridinsoft
0/100
شهادة TLS
منتهية الصلاحية أو غير متحقق منها -58d
العمر
4 mo
الحالة المرصودة
المحتوى غير متوفر 502
PhishDestroy
قائمة الإتلاف
مُدرج
نطاق تغطية البيانات VirusTotal 19 / 94 URLQuery 2 det. PhishStats لم يتم التحقق منها OTX 1 community reference رادار CF provider verdict: malicious URLScan capture التقرير المخزن URLScan verdict اكتمل التحليل حجب عناوين DNS لم يتم التحقق منها TLS منتهية الصلاحية أو غير متحقق منها WHOIS 4 mo old لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها Gridinsoft 0/100
استخبارات أمن الشبكات Registrar Integrity Alert
CF Cloudflare Radar Verdict ضار
Phishing Security threats Phishing Security Risks
High-Risk Registrar NiceNIC
PhishDestroy audit found that over 90% of domains registered through NiceNIC are associated with illegal content. This registrar systematically ignores abuse reports and its primary clientele consists of CIS-region scam operators. We have not identified a single legitimate project hosted on this registrar.
NiceNIC Verdict Full Investigation

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
17/17

حالة قوائم الحظر العامة

لقطة محفوظة

عنوان الصفحة
Valorant Limited Edition Wiki
Impersonates
Netflix Riot Games Valorant
شهادة TLS
منتهية الصلاحية أو غير متحقق منها · صادرة عن Let's Encrypt / R13

معلومات النطاق

النطاق
URLScan Verdict اكتمل التحليل score 0 report ↗
الخادم / ASN ddos-guard · AS59692 IQWeb FZ-LLC
سمعة عنوان IP abuse score 0/100 0 reports checked 14/07/2026
مسجّل النطاق NiceNIC RU(RU) PhishDestroy Investigation
عنوان IP 186.2.171.13 BZ
الموقع الجغرافيBZ Belmopan, BZ
الشبكةAS59692 · Iqweb LLC
التسجيلتم إنشاؤه 27/03/2026 (133d)
حالة HTTP502 Error
الوقت حتى أول تعذّر للوصول 131 days
ما الذي نحتسبه الوقت المنقضي من أول تقرير عن إساءة الاستخدام المخزن إلى الملاحظة الأولى بأن المحتوى غير متوفر. هذا لا يحدد السبب.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف28/03/2026
DOM Analysisanalyzed 29/07/2026score 0/1003 brand signals
IoC Extractionscanned 01/08/20260 wallet · 0 Telegram IoCs
خوادم الأسماءns02.serverspace.io
TLS Fingerprint
TLS Observationvalid from 13/03/2026scanned 28/03/2026
Case ID
ICANN OVERSIGHT

الاعتماد وسياق RAA

حصلت ICANN على أموالها. أما المساءلة فلم تصل.

بالنسبة إلى نطاق gTLD هذا، يعمل المسجّل المذكور أعلاه بموجب عقد مع ICANN. وتحصّل ICANN رسوماً سنوية ومتغيرة ورسومًا قائمة على المعاملات مرتبطة بعمليات التسجيل والتجديد والنقل.

الاعتماد: جرت الاستفادة منه مالياً. المساءلة: يُرجى التحقق مرة أخرى لاحقاً.

ثم يبدأ السحر: تكتب ICANN البند RAA §3.18، ويتولى المسجّل التحقيق في إساءة الاستخدام داخل قاعدة عملائه، ويقدّم الضحايا الأدلة مجاناً، بينما تنتظر كل طبقة أن يتحرك طرف آخر. إذا كان ذلك يجعل الضحايا يشعرون بمزيد من الأمان، فممتاز—لقد أدّت الفاتورة مهمتها.

ملاحظة ساخرة عن المساءلة لا يُرسل أي شيء تلقائياً.

Latest Classified Outcome 2026-08-07 04:29:04 UTC

Primary outcome Registration hold observed reason: Registrar clientHold 95% confidence
Attribution NICENIC INTERNATIONAL GROUP CO., LIMITED mechanism: Registrar clientHold source: Rdap Status Collector
Evidence layers Availability: DNS inactive Content: Unreachable DNS: NXDOMAIN Registration: Registrar clientHold
Latest HTTP observation غير معروف Origin unreachable Http 5xx 20% 2026-08-07 01:37:37 UTC
RDAP registration Registrar clientHold NICENIC INTERNATIONAL GROUP CO., LIMITED · IANA 3765 RDAP HTTP 200 source: Rdap Status Collector clientDeleteProhibitedclientHoldclientTransferProhibited expires 2027-03-13 15:36:56 UTC checked 2026-08-07 04:29:04 UTC
Registrar action marker verified clientHold marker NICENIC INTERNATIONAL GROUP CO., LIMITED · IANA 3765 causal link to our report not established
Observed timeline last reachable: 2026-05-16 18:12:33 UTC current episode first observed: 2026-08-05 01:45:38 UTC observed RIP window: 2026-05-16 18:12:33 UTC → 2026-08-05 01:45:38 UTC · 1,927.55h midpoint estimate ≈ 2026-06-25 21:59:05 UTC · precision very low · basis bounded
Availability, content, DNS and registration are independent evidence layers. NXDOMAIN, an unreachable origin or missing content alone does not prove registrar action. A registrar or provider is credited only when a direct technical marker identifies that actor. Report causality is shown separately.
التقنيات · 5 identified
Node.js
Programming languages

Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.

nodejs.org ثقة 100٪
Tailwind CSS
UI frameworks

Tailwind is a utility-first CSS framework.

tailwindcss.com ثقة 100٪
Express
Web frameworks Web servers

Express is a web application framework for Node.js, released as free and open-source software under the MIT License. It is designed for building web applications and APIs.

expressjs.com ثقة 100٪
HSTS
الأمن

HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.

www.rfc-editor.org ثقة 100٪
DDoS-Guard
الأمن

DDoS-Guard is a Russian Internet infrastructure company which provides DDoS protection, content delivery network services, and web hosting services.

ddos-guard.net ثقة 100٪
Detected via رادار Cloudflare · Wappalyzer engine
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

19 / قام موردو الأمان 94 بوضع علامة على هذا المجال
View on VT
ADMINUSLabs
alphaMountain.ai
CRDF
CyRadar
ESET
Emsisoft
Forcepoint ThreatSeeker
Fortinet
Gridinsoft
LevelBlue
Lionic
Mimecast
نتكرافت
Seclookup
SOCRadar
سوفوس
VIPRE
Webroot
malwares.com URL checker
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of vctlegacy.com · checked Mar 28, 2026

88
Needs Work
Performance
FCP
3.05s
First Contentful Paint
LCP
3.05s
Largest Contentful Paint
CLS
0.001
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
3.05s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

الأدلة والتقارير الخارجية

نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/vctlegacy.com"
  title="PhishDestroy threat report for vctlegacy.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

رسالة شكر صادقة جداً

منشئ مسودة ساخرة

المستلم
سياق الرسوم

مسودة ساخرة. أرقام الرسوم تقديرية، ولا ندّعي نسبتها بدقة إلى هذا النطاق.