invfort[.]guru
“Inventory Check | Fortnite”
اكتشاف محفوظ
تنبيه إخفاء المحتوى
- نوع الإخفاء
content_divergence- درجة الإخفاء
- 1/6
ملخص الأدلة
This domain is flagged for elevated-risk phishing activity involving brand impersonation of Fortnite, a popular online video game. The site presents a fraudulent "Inventory Check" page designed to deceive users into entering credentials or other sensitive information under the guise of verifying in-game inventory. Analysis indicates this is a targeted social engineering attack exploiting the game's user base, likely aiming to harvest login details, payment information, or install malware via fake updates or rewards. Infrastructure analysis reveals the domain invfort.guru was registered on May 20, 2026, through Global Domain Group LLC, a registrar frequently associated with malicious registrations. The domain resolves to IP address 188.114.96.3, hosted on CloudFlare infrastructure in Canada, which is commonly used to obscure origin servers. The site's SSL certificate is issued by Let's Encrypt (serial number E8), a legitimate provider often abused by threat actors to lend false credibility. As of the latest scan, 18 out of 95 security vendors on VirusTotal flag the domain as malicious, while one additional blocklist (PhishDestroy) has also listed it. The domain's creation date in the future (2026) suggests either a typo-squatting attempt or an error in registration metadata, further indicating suspicious intent. Mitigation requires immediate blocking of the domain and its associated IP (188.114.96.3) at the network perimeter. Endpoint protection should be updated to detect and prevent access to invfort.guru and related indicators. Users who may have interacted with the site should be instructed to reset their Fortnite account credentials via the official platform, enable multi-factor authentication, and monitor accounts for unauthorized activity. Security teams should review logs for connections to the domain or IP, particularly from systems where gaming activity is common. Given the use of CloudFlare, additional scrutiny is warranted for other domains resolving to the same IP range, as this may indicate a broader campaign.
لقطة الأدلة المرسلة
- أُرسل
- سجلات الدفتر
- 1
- معرّف القضية
PD-20260520-731B7C- عنوان الصفحة الملتقطة
- Inventory Check | Fortnite
- ملف PDF
- دليل PDF
الأساس القانوني
النص الكامل للدليل
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (Unknown):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | invfort.guru |
malicious | Sinkholed |
| OpenDNS | invfort.guru |
phishing | Phishing Block |
| DigiCert UltraDNS | invfort.guru |
malicious | Sinkholed |
| Hagezi Threat Feed | invfort.guru |
malicious | Sinkholed |
| DNS4EU | invfort.guru |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات
حُدّدت ٤ تقنيات عالية الثقة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of invfort.guru · checked May 20, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب