ysb3[.]co
فحص التصيد والأمان للنطاق ysb3.co
“bet365”
ysb3.co — المحتوى غير متوفر (HTTP 502). انتحال العلامة التجارية: Adobe; نوع الاحتيال: Crypto Gambling. ملخص الأدلة: VirusTotal 17/95 (alphaMountain.ai, BitDefender, CyRadar, ESET, Emsisoft); URLQuery 100 det.; URLScan malicious verdict; Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 95/100. مسجّل النطاق: GoDaddy.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain, ysb3.co, poses a high-risk threat as an Adobe brand impersonation phishing site. It is designed to deceive users into believing they are interacting with legitimate Adobe services, potentially leading to credential theft, unauthorized software downloads, or financial fraud. The site was observed displaying a page title associated with bet365, a gambling platform, which may indicate an attempt to obfuscate its true purpose or exploit unrelated traffic sources. Analysis indicates the domain is part of a broader campaign targeting users seeking Adobe software or support, leveraging brand trust to execute malicious activities. Infrastructure analysis reveals ysb3.co was registered on November 26, 2023, through GoDaddy.com, LLC, and resolves to the IP address 34.96.219.82, hosted on Google LLC’s infrastructure (AS396982) in Hong Kong. The domain is flagged by 17 out of 95 security vendors on VirusTotal, appears on two security blocklists, and is explicitly labeled as phishing by Google Safe Browsing. The SSL certificate, issued by Let’s Encrypt (R13), provides minimal encryption but does not validate the site’s legitimacy. Additional intelligence sources, including PhishDestroy and PhishingDB, have independently confirmed the domain’s malicious nature, reinforcing its classification as a high-risk threat. Users who visited ysb3.co should immediately terminate any active sessions and avoid downloading or executing any files from the site. If credentials or payment information were entered, affected accounts should be secured by changing passwords and enabling multi-factor authentication where available. Devices used to access the domain should be scanned for malware using updated security tools. Network administrators are advised to block the domain and its associated IP (34.96.219.82) at the perimeter to prevent further exposure. Monitoring for unusual account activity or unauthorized software installations is recommended for at least 30 days following exposure.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
Casino / Gambling License Verification
التقنيات · 4 identified
Popular CSS framework for responsive, mobile-first web development.
Modern mobile touch slider with hardware-accelerated transitions.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
تحليل VirusTotal
الأدلة المؤرشفة
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب