الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 2. قوائم الحظر العامة التي تبلغ عن تطابق: 1. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

whitelist-bonkboxes[.]web[.]app

“Maintenance”

حكم التهديد حرجة 76/100 درجة الأدلة
التوفر لم يتم التحقق منها لم يتم التحقق من إمكانية الوصول الحالية
اكتشافات VirusTotal: 2/91 تطابقات القائمة السوداء المخزنة: 1 نوع الاحتيال: Credential Phishing
10/10/2025 CDN

ملخص الأدلة

حرج
Evidence score
76/100

This domain, whitelist-bonkboxes.web.app, is identified as an active credential harvesting site designed to deceive users into submitting sensitive authentication details. Analysis of the page title, labeled 'Maintenance,' indicates an attempt to impersonate legitimate system maintenance notifications, a common tactic in phishing campaigns to exploit user trust and urgency. The domain specifically targets individuals expecting service updates or temporary access restrictions, increasing the likelihood of successful credential compromise. Infrastructure analysis reveals multiple technical indicators supporting this assessment. The domain is registered through Google LLC and resolves to the IPv6 address 2620:0:890::100, hosted on AS54113 (Fastly, Inc.) in the United States. It employs an SSL certificate issued by Google Trust Services (WR4), which may lend a false sense of legitimacy to unsuspecting users. Detection metrics further corroborate the malicious nature of this domain: it is flagged by 2 security blocklists and has been identified by 1 out of 95 security vendors on VirusTotal. Additionally, the domain is actively blocked by two independent security filtering systems. Users who have interacted with whitelist-bonkboxes.web.app should immediately take corrective actions to mitigate potential risks. Any credentials entered on this site should be considered compromised and changed without delay, particularly for accounts associated with financial, corporate, or personal services. System scans using updated security tools are recommended to detect potential secondary infections or unauthorized access attempts. Organizations should also review network logs for connections to the domain or its resolving IP address (2620:0:890::100) and implement temporary block rules to prevent further exposure. Awareness training on recognizing maintenance-themed phishing lures is advised to reduce future susceptibility.

VirusTotal
VirusTotal
2 det.
شهادة TLS
منتهية الصلاحية أو غير متحقق منها -129d
العمر
2.3 yr
الحالة المرصودة
لم يتم التحقق منها
PhishDestroy
قائمة الإتلاف
مدرج

Data Coverage

VirusTotal 2 / 91 URLQuery تم تخزين التقرير - الحكم التفصيلي معلق PhishStats لم يتم التحقق منها OTX no community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict التقييم غير متاح حجب عناوين DNS لم يتم التحقق منها TLS منتهية الصلاحية أو غير متحقق منها WHOIS 28 mo old لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
9/11

تغطية قوائم الحظر

١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026

٩ مصادر خارجية مراقبة لا تطابق

لقطة محفوظة

معلومات النطاق

النطاق
الخادم / ASN cloudflare · AS54113 FASTLY, US
IP Context Cloudflare shared edge origin IP hidden لا تُنسب سمعة Edge-IP إلى هذا المجال.
مزود المنصة Google Domains US(US)
جهة الإبلاغ عن إساءة الاستخدامcloud-abuse@google.com, network-abuse@google.com
عنوان IP 2620:0:890::100 CDN
الموقع الجغرافيUS Mountain View, US
الشبكةAS54113 · Fastly, Inc.
يتم إخفاء عنوان IP الأصلي خلف وكيل CDN. تحتوي نتائج IP العكسي لعنوان الحافة على مستأجرين غير مرتبطين؛ يتطلب العثور على المصدر نظام أسماء النطاقات السلبي أو بيانات شفافية الشهادة.
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
تاريخ أول اكتشاف10/10/2025
DOM Analysisanalyzed 11/03/2026DOM analysis score 76/100
Submitted URLhttps://whitelist-bonkboxes.web.app/
خوادم الأسماءns-cloud.googledomains.com
بصمة TLS
رصد TLSصالح منذ 05/01/2026فُحص في 11/03/2026
الأسماء البديلة لموضوع TLSweb.app
Favicon Hash
عنوان الصفحة
Maintenance
شهادة TLS
منتهية الصلاحية أو غير متحقق منها · صادرة عن Google Trust Services / WR4
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

2 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed Previous stored snapshot: 1 detection
alphaMountain.ai
Gridinsoft
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of whitelist-bonkboxes.web.app · checked Mar 7, 2026

56
Needs Work
Performance
FCP
7.58s
First Contentful Paint
LCP
68.2s
Largest Contentful Paint
CLS
0.007
Cumulative Layout Shift
TBT
101ms
Total Blocking Time
SI
7.58s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان

أدوات خارجية

HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/whitelist-bonkboxes.web.app"
  title="PhishDestroy threat report for whitelist-bonkboxes.web.app"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>