Aller au rapport de sécurité
Checked 09/08/2026 Ref CCAB63F4

MALICIOUS — CRITICAL

jointherealworldex[.]com

The domain jointherealworldex.com is identified as a generic phishing site targeting users of an investment or financial exchange platform.

100/100 evidence score · Critical
VirusTotal
16/91
Blocklists
No stored match
Disponibilité
Dernier actif connu · HTTP 200
Report / Add Evidence Appeal this listing
2026-06-23 08:32 UTCDernier actif connu · HTTP 200

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Ce domaine a été signalé comme malveillant
Moteurs de sécurité signalant une détection : 16. Faites preuve d’une extrême prudence – ne saisissez pas d’informations d’identification ou d’informations personnelles.
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . The recorded recipient is abuse@globaldomaingroup.com. The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
2 months
Reports sent
1
Latest case ID
PD-20260601-E61ACD
Current status
HTTP 200 at latest stored check
Jump to section
Résumé du rapport

jointherealworldex.com — Dernier actif connu (HTTP 200). Type d'arnaque : Fake Exchange. Résumé des preuves: VirusTotal 16/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); URLQuery 1 alert; PhishDestroy score 100/100. Bureau d’enregistrement: Global Domain Group.

L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.

Evidence Analysis

Ref CCAB63F4

jointherealworldex.com Fake Investment Platform Alert

jointherealworldex.com is identified as a generic phishing threat, flagged by 15 of 95 VirusTotal vendors and listed on one security blocklist, posing potential.

The domain jointherealworldex.com is identified as a generic phishing site targeting users of an investment or financial exchange platform. Analysis indicates the domain is designed to mimic legitimate financial services, likely to harvest credentials or distribute fraudulent investment schemes. As of the latest assessment, the domain has been taken offline, though prior activity suggests it was actively used in phishing campaigns. Technical indicators confirm the domain was registered on May 15, 2025, through Global Domain Group LLC. It resolves to the IP address 198.251.84.200 and is flagged by 15 of 95 security vendors on VirusTotal. The domain appears on one security blocklist and was previously blocked by PhishDestroy. Detected technologies include PHP, YouTube embeds, Bootstrap, LiteSpeed, Smartsupp, Slick, jQuery, and Popper.js, alongside a Let’s Encrypt SSL certificate. The page title, 'Join The Real World Exchange,' reinforces the impersonation of a financial platform. Current status indicates the domain is offline, reducing immediate risk to users. However, historical activity and infrastructure analysis suggest potential for reemergence under a similar or altered domain. Organizations and individuals are advised to monitor for related domains using the same IP range or registrar. Network defenders should update blocklists to include 198.251.84.200 and domains registered via Global Domain Group LLC with similar naming patterns. Users who interacted with this domain should reset credentials for financial accounts and enable multi-factor authentication where available.

Stored source results

Recorded verdicts and infrastructure observations for this domain.

VirusTotal
VirusTotal
16 det.
URLQuery
URLQuery
1 threat alert
DNS Security
3/14
URLScan
URLScan
Gridinsoft
1/100
Certificat TLS
Let's Encrypt
Âge
1.2 yr
Statut observé
Dernier actif connu 200
PhishDestroy
DestroyList
Répertorié
Reports Sent
1
Couverture des données13 recorded checks
VirusTotal 16 / 91 URLQuery 1 threat-system alert PhishStats pas vérifié OTX no community references CF Radar scan completed URLScan capture rapport stocké URLScan verdict Analyse terminée Blocs DNS 3/14 TLS valid certificate, 65d WHOIS 15 mo old Capture d'écran 3 captures · 3 sources Chaîne de redirection non sondé Gridinsoft 1/100
Renseignements sur la sécurité réseau
DNS Provider Blocks 3 / 14
Controld Adblock Controld Family Controld Malware
Threat Detection Systems 1 alert
Detection System Indicator Verdict Alert
DNS4EU jointherealworldex.com malicious Sinkholed

Processus de réponse aux menaces Pipeline

Découverte
Checks
Reports
Disponibilité
12/13
Sent Report Recorded
Stored sent-report record for registrar Global Domain Group LLC, hosting provider, 1 abuse contact
abuse@globaldomaingroup.com
01/06/2026

Statut de la liste de blocage publique

Capture enregistrée

Titre de la page
Join The Real World Exchange
Certificat TLS
Valid transport encryption · Émis par Let's Encrypt · valid for 65 days

Informations sur les domaines

Domaine
URLScan Verdict Analyse terminée score 0 report ↗
Serveur / ASN LiteSpeed · AS53667 PONYNET - FranTech Solutions, US
Réputation de l’IP abuse score 18/100 6 reports checked 13/07/2026
Bureau d’enregistrement Global Domain Group US(US)
Adresse IP 198.251.84.200 US
LocalisationUS Cheyenne, US
RéseauAS53667 · FranTech Solutions
EnregistrementCréé 15/05/2025 Expires 15/05/2027
Elapsed Since First Report 38h
Ce que nous comptons Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: Dernier actif connu.
Ce que contient chaque rapport Les enregistrements de rapports sortants stockés peuvent faire référence à des preuves disponibles à ce moment-là, telles que les verdicts des fournisseurs, les données d'enregistrement, les détails d'hébergement, les classifications ou les captures d'écran. Cette page ne déduit pas la charge utile exacte livrée, la réception, l'accusé de réception ou l'action d'un destinataire.
Statut HTTP200
Détails techniquesDNS, SAN SSL, horodatages
Première détection01/06/2026
DOM Analysisanalyzed 11/06/2026score 88/100
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttps://jointherealworldex.com/
Serveurs de nomsns5.asurahosting.comns5.my-control-panel.comns6.asurahosting.comns6.my-control-panel.com
MX Records0 jointherealworldex.com
TLS Fingerprint
TLS Observationvalid from 01/06/2026scanned 11/06/2026
TLS SAN Domainsautodiscover.jointherealworldex.comcpanel.jointherealworldex.comcpcalendars.jointherealworldex.comcpcontacts.jointherealworldex.commail.jointherealworldex.comwebdisk.jointherealworldex.comwebmail.jointherealworldex.comwww.jointherealworldex.comwww.jointherealworldex.com.elite-investcapital.com
Favicon Hash
Case ID
ICANN OVERSIGHT

Contexte de l’accréditation et du RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Rien n’est envoyé automatiquement.
Technologies · 9 identified
PHP
Programming languages

PHP is a general-purpose scripting language used for web development.

php.net Confiance à 100 %
YouTube
Video players

YouTube is a video sharing service where users can create their own profile, upload videos, watch, like and comment on other videos.

www.youtube.com Confiance à 100 %
Bootstrap
UI frameworks

Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.

getbootstrap.com Confiance à 100 %
LiteSpeed
Web servers

LiteSpeed is a high-scalability web server.

litespeedtech.com Confiance à 100 %
Smartsupp
Live chat

Smartsupp is a live chat tool that offers visitor recording feature.

www.smartsupp.com Confiance à 100 %
Slick
JavaScript libraries
kenwheeler.github.io Confiance à 100 %
jQuery
JavaScript libraries

jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.

jquery.com Confiance à 100 %
Popper
Miscellaneous

Popper is a positioning engine, its purpose is to calculate the position of an element to make it possible to position it near a given reference element.

popper.js.org Confiance à 100 %
HTTP/3
Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

httpwg.org Confiance à 100 %
Detected via Cloudflare Radar · Wappalyzer engine
Signaler ce domaine Envoyez des éléments de preuve et contribuez à protéger les autres

Analyse VirusTotal

16 / Les fournisseurs de sécurité 91 ont signalé ce domaine
View on VT
Last analyzed Previous stored snapshot: 15 detections
ADMINUSLabs
alphaMountain.ai
BitDefender
Chong Lua Dao
CRDF
CyRadar
Fortinet
G-Data
Gridinsoft
Kaspersky
Lionic
Netcraft
SOCRadar
Sophos
VIPRE
desenmascara.me
Analyse des performances du site

Google PageSpeed Insights — mobile performance audit of jointherealworldex.com · checked Jun 26, 2026

56
Needs Work
Performance
FCP
7.18s
First Contentful Paint
LCP
13.66s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
57ms
Total Blocking Time
SI
9.03s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Données factuelles et rapports externesIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.

Europol
Trouvez le canal de signalement officiel pour votre pays de l'UE
National police directory
Méfiez-vous des escrocs qui prétendent vous aider à récupérer vos biens ! Les criminels peuvent recontacter leurs victimes tout en se faisant passer pour des enquêteurs, des avocats ou des agents de recouvrement. Ne payez pas de frais initiaux et ne partagez pas vos informations d'identification. En savoir plus sur la fraude liée aux aides à la reprise →

Signalez-le à vos autorités locales

Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.

Annuaire de 97 pays
Brouillon assisté par l'IA : les détails de l'incident sont traités par le fournisseur d'IA Examinez-le et soumettez-le vous-même
Intégrer ce rapportRead-only HTML widget
HTML · IFRAME

Intégrer ce rapport

Partagez ces informations sur les menaces sur votre site web ou votre blog

embed.html
<iframe
  src="https://phishdestroy.io/fr/embed/domain/jointherealworldex.com"
  title="PhishDestroy threat report for jointherealworldex.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Une lettre de remerciement très sincère

Générateur de brouillon satirique

Destinataire
Contexte des frais

Brouillon satirique. Les montants des frais sont des estimations ; aucune attribution exacte à ce domaine n’est affirmée.