trez-investment[.]com
“trez-investment.com”
trez-investment.com — المحتوى غير متوفر (HTTP 502). انتحال العلامة التجارية: Across; نوع الاحتيال: Crypto Scam. ملخص الأدلة: VirusTotal 2/93 (alphaMountain.ai, Fortinet); PhishDestroy score 61/100. مسجّل النطاق: NameCheap.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Analysis of trez-investment.com shows a newly registered domain (created February 21, 2026) that was active for a short period before being taken offline. The site presented a page title identical to the domain name, offering no additional context. Registry data indicates the domain was registered through NameCheap, Inc., and the hosting IP resolves to 107.172.61.186, an address owned by AS36352 HostPapa located in the United States. The SSL certificate associated with the host is identified as R11, a low‑trust issuance.
Reputation services assign extremely low scores: Gridinsoft reports a trust score of 0 / 100, while Scamadviser gives 1 / 100, and the domain is listed on a single security blocklist. VirusTotal analysis recorded two detections out of ninety‑three scanned engines, confirming that at least a small subset of security products recognize malicious behavior. The domain is also flagged by PhishDestroy and classified as a crypto‑related scam, specifically a brand‑impersonation campaign targeting the “across” brand.
Because the site is currently offline, active exploitation cannot be observed, but the combination of low trust metrics, malicious certificate, and detections suggests the domain was used to lure victims under the guise of a legitimate brand. Defenders should immediately block the domain and its associated IP address at perimeter filters, add the host to threat‑intel feeds, and monitor for any residual traffic or reuse of the infrastructure. Continuous observation of the registrar and hosting provider for similar patterns is advised, as the rapid creation‑to‑offline lifecycle is typical of opportunistic brand‑impersonation campaigns.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب