beastwey[.]com
“Google Chrome - The Fast & Secure Web Browser Built to be Yours”
beastwey.com — Konten tidak tersedia (HTTP 502). Peniruan identitas merek: Across; Jenis penipuan: Investment Scam. Ringkasan bukti: VirusTotal 8/94 (alphaMountain.ai, CRDF, ESET, Forcepoint ThreatSeeker, Fortinet); URLQuery 1 alert; PhishDestroy score 78/100. Registrar: MAT BAO.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Analysis of the domain beastwey.com indicates it was actively involved in an investment scam operation, classified as generic phishing with an elevated risk level. The domain was registered on July 5, 2025, through MAT BAO CORPORATION and has since been taken offline. Infrastructure analysis reveals it resolved to the IP address 69.5.189.54, hosted under Global-Data System IT Corporation in Switzerland. The domain utilized four nameservers: ns1.nameserverhub.com, ns2.nameserverhub.com, ns3.nameserverhub.com, and ns4.nameserverhub.com.
No SSL certificate was detected, increasing the likelihood of unencrypted communications between victims and the server. Technical indicators show the domain was running on Nginx with OpenResty, a configuration often observed in phishing infrastructure due to its flexibility in handling high traffic volumes. At the time of assessment, the domain appeared on one security blocklist, and eight out of ninety-four security vendors on VirusTotal flagged it as malicious. The absence of an SSL certificate and the use of a hosting provider with a history of abuse further support the classification of this domain as part of a phishing campaign.
Defenders should treat this domain as compromised and ensure it remains blocked at the network level. Given its offline status, monitoring for re-registration or re-emergence under a similar naming pattern is recommended. No specific brand impersonation details are available from the provided data, so the exact nature of the investment scam remains unconfirmed. Organizations should correlate logs for connections to 69.5.189.54 and the listed nameservers to identify potential prior exposure.
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | beastwey.com |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Intelijen Forensik
Teknologi · 2 identified
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Web platform based on Nginx with LuaJIT for scalable web apps.
Analisis VirusTotal
Bukti & Laporan Eksternal
PD-20260320-AD2F71 Recipient: abuse@matbao.com Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive