web3invest[.]org
“Web3Invest”
web3invest.org — सामग्री अनुपलब्ध (HTTP 502). ब्रांड प्रतिरूपण: Google; घोटाले का प्रकार: Investment Scam. साक्ष्य सारांश: VirusTotal 1/93 (SOCRadar); PhishDestroy score 55/100. रजिस्ट्रार: Hostinger.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Analysis as of July 24 2026 indicates that the domain web3invest.org was registered on February 21 2026 through Hostinger operations, UAB. The site presents the page title “Web3Invest” and is classified as an investment‑scam impersonating Google. The domain resolves to the IP address 172.67.221.4, which belongs to AS13335 Cloudflare, Inc. and is geolocated in the United States. No TLS certificate is presented, meaning the site is served over plain HTTP. Reputation services show a Gridinsoft trust score of 0 out of 100 and the domain appears on a single security blocklist.
VirusTotal data reports that one of ninety‑three scanning engines flagged the domain, and the blocklist PhishDestroy also lists it as malicious. The site’s current HTTP status is offline, suggesting that the payload has been taken down or the hosting has been terminated, but the infrastructure details remain active. Because the domain lacks an SSL certificate, browsers will flag it as insecure, which aligns with the zero trust score reported by Gridinsoft. The single blocklist entry and the solitary vendor detection indicate limited but concrete evidence of malicious intent. The impersonation of Google combined with the investment‑scam narrative suggests a social‑engineering campaign aimed at extracting funds from users who may be lured by promises of cryptocurrency or Web3 returns.
No additional indicators such as phishing kit signatures or malware hashes have been released, and the exact content of the site is not available for analysis. Defenders should update internal blocklists to include web3invest.org, enforce DNS sink‑hole rules for the associated IP address, and monitor Cloudflare‑hosted assets for any re‑use of the same IP range. Threat‑hunting teams should correlate any user‑initiated connections to 172.67.221.4 with endpoint logs and flag anomalous traffic.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टें
PD-1769263507-web3invest.org Recipient: abuse@hostinger.com क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।