الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 15. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

vip[.]163[.]eurodelikatese[.]com

“163网易免费邮--中文邮箱第一品牌”

حكم التهديد حرجة 95/100 درجة الأدلة
التوفر لم يتم التحقق منها لم يتم التحقق من إمكانية الوصول الحالية
اكتشافات VirusTotal: 15/95 انتحال العلامة التجارية: 163.cn
22/11/2025 163.cn
ملخص التقرير

vip.163.eurodelikatese.com — لم يتم التحقق منها. انتحال العلامة التجارية: 163.cn; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 15/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. مسجّل النطاق: PDR.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
CC26DF78
الدرجة
95/100

Analysis of vip.163.eurodelikatese.com indicates that the domain is currently offline but previously returned HTTP 200 responses, suggesting an operational web service before takedown. The site presented the page title “163网易免费邮--中文邮箱第一品牌”, directly referencing the 163.cn brand, and is classified as a brand‑impersonation campaign targeting the Chinese email service. The domain resolves to IP 185.58.73.251, which is assigned to AS201563 (cyber_Folks d.o.o) located in Croatia. Hosting is fronted by LiteSpeed with HTTP/3 enabled, and the TLS certificate is a Let’s Encrypt R12 certificate, indicating recent certificate issuance but not necessarily legitimate ownership. Nameserver resolution points to dns1.cdn.hr and dns2.cdn.hr, both hosted in the same HR network, reinforcing the geographic correlation.

Registration data shows the domain was created on 10 May 2011 through PDR Ltd. d/b/a PublicDomainRegistry.com, a registrar frequently observed in malicious deployments. The domain appears on a single security blocklist and has been flagged by 15 of 95 security vendors on VirusTotal, providing moderate detection confidence. PhishDestroy has already blocked the domain, reducing immediate exposure. Uncertainty remains regarding the current infrastructure after the offline status; no live page content can be verified, and the exact phishing kit or credential‑capture mechanism is not disclosed.

Defenders should continue to enforce blocklisting of the domain and its associated IP address, monitor for any re‑registration or resurrection of the host, and incorporate the observed TLS fingerprint and name server patterns into detection rules. Additional scrutiny of outbound traffic to the HR ASN and any DNS queries for the domain is advisable. Because the domain mimics a well‑known Chinese email brand, email security gateways should be tuned to flag similar brand‑specific page titles and to validate TLS certificates against known legitimate 163.cn endpoints.

VirusTotal
VirusTotal
15 det.
رادار CF
ضار
شهادة TLS
R12
العمر
15.3 yr
الحالة المرصودة
لم يتم التحقق منها
PhishDestroy
قائمة الإتلاف
مُدرج
نطاق تغطية البيانات VirusTotal 15 / 95 URLQuery تم تخزين التقرير - الحكم التفصيلي معلق PhishStats لم يتم التحقق منها OTX no community references رادار CF provider verdict: malicious URLScan capture التقرير المخزن URLScan verdict malicious حجب عناوين DNS لم يتم التحقق منها TLS valid certificate, 69d WHOIS 186 mo old لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكات
CF Cloudflare Radar Verdict ضار
Phishing Security threats Phishing

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
16/18

حالة قوائم الحظر العامة

لقطة محفوظة

عنوان الصفحة
163网易免费邮--中文邮箱第一品牌
شهادة TLS
Valid transport encryption · صادرة عن R12 · valid for 69 days

معلومات النطاق

النطاق
URLScan Verdict ضار score 100 Phishing brand: 163chinabrand: Genericchina report ↗
الخادم / ASN LiteSpeed · AS201563 AVALON-AS cyber_Folks d.o.o, HR
سمعة عنوان IP abuse score 0/100 0 reports checked 27/07/2026
Registrar (base domain) PDR IN(IN)
عنوان IP 185.58.73.251 HR
الموقع الجغرافيHR Zagreb, HR
الشبكةAS201563 · cyber_Folks d.o.o
Registration (base domain)eurodelikatese.com · تم إنشاؤه 10/05/2011
Elapsed Since First Report 99 days
ما الذي نحتسبه Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: لم يتم التحقق منها.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف22/11/2025
DOM Analysisanalyzed 28/07/2026score 0/100
IoC Extractionscanned 02/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://vip.163.eurodelikatese.com/
خوادم الأسماءdns1.cdn.hrdns2.cdn.hr
TLS Fingerprint
TLS Observationvalid from 07/02/2026scanned 11/03/2026
TLS SAN Domainswww.vip.163.eurodelikatese.com
ICANN OVERSIGHT Registration: eurodelikatese.com

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For the registrable domain eurodelikatese.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.
التقنيات · 2 identified
LiteSpeed
Web servers

High-performance web server compatible with Apache configurations.

HTTP/3
Miscellaneous

Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.

Detected via رادار Cloudflare · Wappalyzer engine
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

15 / قام موردو الأمان 95 بوضع علامة على هذا المجال
View on VT
Last analyzed
ADMINUSLabs
alphaMountain.ai
BitDefender
CyRadar
ESET
Forcepoint ThreatSeeker
Fortinet
G-Data
كاسبرسكي
Lionic
Phishing Database
SOCRadar
سوفوس
VIPRE
Webroot

الأدلة المؤرشفة

Wayback Machine Snapshot
لقطة تاريخية متاحة لمراجعة الأدلة
View Archive

الأدلة والتقارير الخارجية

نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/vip.163.eurodelikatese.com"
  title="PhishDestroy threat report for vip.163.eurodelikatese.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

رسالة شكر صادقة جداً

منشئ مسودة ساخرة

المستلم
سياق الرسوم

مسودة ساخرة. أرقام الرسوم تقديرية، ولا ندّعي نسبتها بدقة إلى هذا النطاق.