الانتقال إلى تقرير الأمان
أمن المجال وذكاء التهديدات
xyz-valid.beer favicon

xyz-valid.beer

“xyz-valid.beer”

حكم التهديد حرجة 86/100 درجة الأدلة
التوفر خطأ في الخادم آخر استجابة مخزنة كانت غير حاسمة
اكتشافات VirusTotal: 4/89 انتحال العلامة التجارية: Unknown المجال الصغير: 23 عمره أيام
OTX: 7 refs 13/09/2026 غير معروف
Actions API
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 4. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
ملخص التقرير

xyz-valid.beer — خطأ في الخادم (HTTP 502). انتحال العلامة التجارية: Unknown; نوع الاحتيال: Impersonation. ملخص الأدلة: VirusTotal 4/89 (CRDF, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); URLScan capture; PhishDestroy score 86/100. مسجّل النطاق: Hosting Concepts.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة

حرج
الدرجة
86/100

PhishDestroy first observed xyz-valid.beer on Sep 13, 2026. Stored content metadata identifies Unknown as the apparent target. The captured page title is “xyz-valid.beer”. Stored page analysis classifies the content as impersonation. Current evidence score: 86/100 (critical).

One source contains a positive finding: VirusTotal. VirusTotal recorded 4 detections among 89 engines: CRDF, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar on Sep 21, 2026 at 05:22 UTC. Non-positive and contextual checks: AlienVault OTX listed 7 community pulse references (not vendor detections) on Sep 21, 2026 at 05:23 UTC. The separate external-blocklist snapshot contained no matches on Sep 21, 2026 at 02:20 UTC. Google Safe Browsing returned no flag on Sep 21, 2026 at 05:22 UTC. A URLScan capture is available, but no capture timestamp was recorded.

HTTP 502 server error was recorded on Sep 21, 2026 at 01:35 UTC. Registration records for the domain list Hosting Concepts B.V. d/b/a Registrar.eu as the registrar and Aug 28, 2026 as the creation date. Registration preceded first observation by 16 days. At collection time, the hostname resolved to 185.53.179.136 on AS206834 (Team Internet AG). The recorded endpoint location is Munich, DE. DOM analysis on Sep 20, 2026 at 02:20 UTC returned 86/100. The evidence archive retains 1 visual capture from PhishDestroy.

Stored content provides classification context, but only one source contains a positive finding.

VirusTotal
VirusTotal
4 det.
OTX references
العمر
23d Very New!
الحالة المرصودة
خطأ في الخادم 502
PhishDestroy
قائمة الإتلاف
مدرج
نطاق تغطية البيانات VirusTotal 4 / 89 OTX 7 community references رادار CF scan completed URLScan capture التقرير المخزن TLS لا توجد بيانات للشهادة WHOIS 23d old لقطة شاشة لقطة خارجية

Forensic History & Detection Timeline

This timeline displays historical security and status checkpoints observed by the PhishDestroy automated monitoring network. It records domain lifecycle updates, scanner changes, and threat telemetry over time.
  1. VirusTotal Detections Update Sep 20, 2026 · 21:52 UTC
    VirusTotal scanner detections updated from 2 to 4. Added scanner alerts: CRDF, Gridinsoft.
  2. Threat First Observed Sep 19, 2026 · 20:21 UTC
    Domain ingestion complete. Initial state is marked as alive.

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
11/13

حالة قوائم الحظر العامة

Evasion analysis

Cloaking & traffic-distribution check

Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.

Stored cloaking flag
Not yet scanned
Last cloaking scan

Scanner note: transient_502: raw=transient_502; http=502; via=http_proxy

Live TDS fingerprint check
Seven Keitaro fingerprints plus a crawler-versus-browser comparison, run from the PhishDestroy scanner when this section scrolls into view.
Waiting

لقطة محفوظة · 1 source

عنوان الصفحة
xyz-valid.beer

معلومات النطاق

النطاق
الخادم / ASN AS206834 Team Internet AG
سمعة عنوان IP abuse score 20/100 207 reports PhishingWeb App Attack checked 19/09/2026
OTX Tags 2026-09activeall-domainsblocklistbrand-hyperliquidcontentcredential-theftcryptoالمجالاتdrainerfraudmonthlyphishdestroyphishing+1 more
مسجّل النطاق Hosting Concepts NL(NL)
التسجيلتم إنشاؤه 28/08/2026 (23d · Very New!)
حالة HTTP502 Error
التفاصيل التقنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف13/09/2026
DOM Analysisanalyzed 20/09/2026score 86/100
IoC Extractionscanned 20/09/20260 wallet · 0 Telegram IoCs
خوادم الأسماءverify1.registrar.eu
TLS Observationscanned 21/09/2026
ICANN OVERSIGHT

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

4 / قام موردو الأمان 89 بوضع علامة على هذا المجال
View on VT
Last analyzed First positive detection Previous stored snapshot: 4 detections
CRDF
Forcepoint ThreatSeeker
Gridinsoft
SOCRadar
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of xyz-valid.beer · checked Sep 20, 2026

97
Good
Performance
FCP
0.93s
First Contentful Paint
LCP
0.93s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
50ms
Total Blocking Time
SI
4.7s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

معلومات المجتمع

بلاغ مجتمعي واحد

الفئةPHISHING

Dear Team, We are writing to report a phishing operation running under the registered name xyz-valid[.]beer, whose business is the theft of cryptocurrency from anyone who lands on it. The registered name shows nothing of its own. Opening it in a browser finishes on an advertisi

الأدلة والتقارير الخارجية

Community Scam Report — ChainAbuse
1 report filed for xyz-valid.beer (1 written by a person) · category: Phishing · source checked
“Dear Team, We are writing to report a phishing operation running under the registered name xyz-valid[.]beer, whose business is the theft of cryptocurrency from anyone who lands on it. The registered name shows nothing of its own. Opening it in a browser finishes on an advertising page served by a third party, which prints the domain name as a heading and offers a short list of "Related Searches" about craft breweries, subscription services and drink package deals. That is the face the name pre”
— reported by Anonymous on Sep 12, 2026 · Source: ChainAbuse (TRM Labs) — full report and evidence there.
نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/xyz-valid.beer"
  title="PhishDestroy threat report for xyz-valid.beer"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>