zoth-vote[.]com
فحص التصيد والأمان للنطاق zoth-vote.com
“zOPAL Vault | Zoth”
zoth-vote.com — المحتوى غير متوفر (HTTP 502). انتحال العلامة التجارية: Base; نوع الاحتيال: Generic Phishing. ملخص الأدلة: VirusTotal 1/94 (Gridinsoft); Spamhaus DBL_PHISH; 3 external blocklist matches (MetaMask, ScamSniffer, SEAL); PhishDestroy score 78/100. مسجّل النطاق: NiceNIC.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy has flagged zoth-vote.com as a suspicious domain posing as a fake voting or vault portal, likely attempting to harvest credentials or cryptocurrency wallet information from unsuspecting users. The site presents itself as the "zOPAL Vault | Zoth," a decoy interface designed to trick visitors into believing it is a legitimate service. While the domain uses a Let's Encrypt SSL certificate for an air of legitimacy, this alone does not guarantee safety, as threat actors frequently exploit free certificates to mask malicious intent. The site resolves to IP address 188.114.96.3, a hosting infrastructure often associated with low-reputation or newly registered domains. Given its recent creation date of April 16, 2026, and its current status as active with zero detections on VirusTotal (as of the latest scan), zoth-vote.com evades immediate detection by automated security tools, making it a stealthy threat. This domain was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar known for accommodating high volumes of domain registrations, including those later associated with malicious activity. The lack of detections (1/95) on VirusTotal indicates that mainstream antivirus and security engines have not yet flagged the domain, which is not uncommon for newly emerged phishing sites. The combination of a recent registration date, a generic phishing threat type, and zero detections suggests this is an emerging threat that could rapidly escalate in sophistication or spread through spam campaigns. The site’s page title, "zOPAL Vault | Zoth," further implies a focus on cryptocurrency or digital asset deception, a common tactic to lure users into disclosing sensitive information or transferring funds. If you have visited zoth-vote.com, immediately cease any interaction with the site and avoid entering personal information, login credentials, or cryptocurrency wallet details. Check your device for signs of compromise, such as unauthorized software installations or unusual network activity. If you entered any sensitive data, change your passwords immediately and monitor your financial accounts for suspicious transactions. Consider using a reputable antivirus scanner to perform a full system check. Report the domain to your cybersecurity team or through platforms like PhishDestroy to help block its spread. Stay vigilant for phishing emails or messages referencing this domain, as threat actors often use such sites in coordinated campaigns.
استخبارات أمن الشبكات Registrar context
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-08 04:36:36 UTC
التقنيات · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org ثقة 100٪Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com ثقة 100٪HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org ثقة 100٪تحليل VirusTotal
الأدلة والتقارير الخارجية
PD-20260421-E55109 Recipient: abuse@nicenic.net هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب