x[.]referencehub[.]store
فحص التصيد والأمان للنطاق x.referencehub.store
“404 Not Found”
x.referencehub.store — المحتوى غير متوفر (HTTP 404). نوع الاحتيال: Crypto Drainer. ملخص الأدلة: VirusTotal 3/91 (alphaMountain.ai, Forcepoint ThreatSeeker, Gridinsoft); PhishDestroy score 65/100. مسجّل النطاق: Dynadot.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
x.referencehub.store is a recently identified crypto drainer phishing domain classified under generic phishing threats. The domain impersonates legitimate service hubs to deceive users into connecting cryptocurrency wallets, enabling unauthorized fund transfers via malicious JavaScript drainer kits embedded in the site. Security researchers have flagged this domain due to its suspicious behavioral patterns, including fake reward prompts and fraudulent transaction approval interfaces. x.referencehub.store resolves to IP address 188.114.97.3 and operates under Google Trust Services SSL certificates for HTTPS encryption. VirusTotal currently reports 3 out of 95 antivirus engines detecting the domain as malicious, indicating an emerging or undetected threat. The domain was registered through a privacy-protected registrar, obscuring ownership details, and was created recently, per domain age analysis. It remains unflagged in Google Safe Browsing (GSB) and has no presence on major blocklists at this stage. The lack of detection coupled with active infrastructure suggests a developing campaign with high evasion potential. This domain remains active and under investigation by threat intelligence teams. Users are advised to avoid interacting with x.referencehub.store and report any suspicious activity immediately. Security teams should monitor associated IP ranges and SSL certificates for additional infrastructure linked to this campaign. Remaining risk is classified as moderate due to the evolving nature of the threat and current lack of widespread detection. Immediate caution and proactive blocking in enterprise environments is recommended to mitigate potential cryptocurrency theft.
نطاق تغطية البيانات12 recorded checks
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
Registration: referencehub.store
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain referencehub.store behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات · 3 identified
Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com ثقة 100٪Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com ثقة 100٪HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org ثقة 100٪تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of x.referencehub.store · checked May 6, 2026
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.