الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 1. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

wep[.]wf

فحص التصيد والأمان للنطاق wep.wf

“Leeloo.ai”

حكم التهديد حرجة 81/100 درجة الأدلة
التوفر آخر نشاط معروف أحدث مراقبة إمكانية الوصول المخزنة
إشارات الخطر
اكتشافات VirusTotal: 1/91 آخر نشاط معروف
1/91 VT OTX: 4 refs 05/07/2026 DE DE
ملخص التقرير

wep.wf — آخر نشاط معروف (HTTP 301). ملخص الأدلة: VirusTotal 1/91 (Forcepoint ThreatSeeker); PhishDestroy score 81/100. مسجّل النطاق: INSTRA.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
19527FBF
الدرجة
81/100

This domain, wep.wf, is identified as a credential theft phishing site designed to harvest user login details through fake authentication portals. Visitors to this domain may have been presented with fraudulent login pages mimicking legitimate services, capturing entered usernames, passwords, or other sensitive credentials without their knowledge. Such stolen data is often exploited for unauthorized account access, financial fraud, or further targeted phishing attacks. Analysis indicates the domain was registered through INSTRA CORPORATION PTY LTD and resolved to the IP address 18.192.231.177, hosted on infrastructure using an Amazon SSL certificate. At the time of assessment, the domain showed 0 detections out of 95 security engines on VirusTotal, suggesting it had not yet been widely flagged by automated systems. However, it appeared on at least one security blocklist, specifically Hagezi, and has since been taken offline. If you visited wep.wf or entered any information on a page resembling this domain, immediate action is required. Disconnect the device from the network to prevent potential data exfiltration and run a full scan using updated security tools to detect any installed malware. Change passwords for all accounts accessed from the compromised device, prioritizing email, financial, and work-related services. Enable multi-factor authentication where available to add an additional layer of security. Monitor accounts for unusual activity and report any unauthorized access to the relevant service providers.

VirusTotal
VirusTotal
1 det.
OTX references
Gridinsoft
63/100
شهادة TLS
Amazon / Amazon RSA 2048 M01
الحالة المرصودة
آخر نشاط معروف 301
PhishDestroy
قائمة الإتلاف
مُدرج
نطاق تغطية البيانات VirusTotal 1 / 91 URLQuery لم يتم التحقق منها PhishStats لم يتم التحقق منها OTX 4 community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict اكتمل التحليل حجب عناوين DNS لم يتم التحقق منها TLS valid certificate, 51d WHOIS not parsed لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها Gridinsoft 63/100

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
10/12

حالة قوائم الحظر العامة

لقطة محفوظة

معلومات النطاق

النطاق
URLScan Verdict اكتمل التحليل score 0 report ↗
الخادم / ASN nginx · AS16509 AMAZON-02 - Amazon.com, Inc., US
سمعة عنوان IP abuse score 0/100 0 reports checked 04/08/2026
مسجّل النطاق INSTRA
جهة الإبلاغ عن إساءة الاستخدامfrdomains@instra.com
البحث في قاعدة بيانات WHOISICANN RDAP لـ wep.wf →
عنوان IP 18.192.231.177 DE
الموقع الجغرافيDE Frankfurt am Main, DE
الشبكةAS16509 · Amazon.com, Inc.
التسجيلExpires 23/07/2030
حالة HTTP301 Moved Permanently
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف05/07/2026
DOM Analysisanalyzed 11/07/2026score 81/100
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttps://wep.wf/87j7fr
خوادم الأسماءns-1425.awsdns-50.orgns-2002.awsdns-58.co.ukns-414.awsdns-51.comns-748.awsdns-29.net
TLS Fingerprint
TLS Observationvalid from 15/03/2026scanned 09/07/2026
عنوان الصفحة
Leeloo.ai
شهادة TLS
Valid transport encryption · صادرة عن Amazon / Amazon RSA 2048 M01 · valid for 51 days
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

1 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed Previous stored snapshot: 1 detection
Forcepoint ThreatSeeker

الأدلة والتقارير الخارجية

نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/wep.wf"
  title="PhishDestroy threat report for wep.wf"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>