MALICIOUS — CRITICAL
Pemeriksaan phishing dan keamanan projectxai.org
projectxai[.]
Security analysis of projectxai.org covers observed phishing indicators, infrastructure evidence, current status, and defensive guidance.
- VirusTotal
- 6/93
- Blocklists
- No stored match
- Ketersediaan
- Dapat dijangkau · akses dibatasi · HTTP 403
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
projectxai.org — Dapat dijangkau · akses dibatasi (HTTP 403). Ringkasan bukti: VirusTotal 6/93 (alphaMountain.ai, CyRadar, Fortinet, G-Data, SOCRadar); PhishDestroy score 78/100. Registrar: NiceNIC.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Evidence Analysis
On July 24, 2026, analysis of projectxai.org indicates that the domain was created on 21 February 2026 through NiceNIC International Group Co., Limited and is currently resolved to 104.21.29.120, an address owned by Cloudflare, Inc. (AS13335) located in the United States. The site is protected by Cloudflare's edge services and presents the page title “Attention Required! | Cloudflare”, returning an HTTP 403 status code. The TLS certificate presented is issued by Google Trust Services under the “WE1” designation, confirming the use of a legitimate certificate chain. VirusTotal has recorded detections from six of ninety‑three scanning engines, suggesting that at least a subset of vendors identifies malicious behavior.
The domain is listed on a single security blocklist and has been actively blocked by the PhishDestroy service, reinforcing its classification as a phishing‑related resource. Technology profiling shows only Cloudflare, matching the observed CDN and DNS configuration with nameservers mallory.ns.cloudflare.com and rohin.ns.cloudflare.com. The presence of a recent registration date, the use of a reputable CDN, and a valid SSL certificate are tactics commonly employed to increase credibility and evade simple blocklist checks. However, the limited number of detections and the single blocklist listing imply that broader detection coverage may be lacking.
The current offline status limits immediate threat exposure, yet the infrastructure could be re‑activated or cloned for future campaigns. Defenders should add the domain and its associated IP address to allow‑list monitoring, ensure that any residual DNS entries are observed for re‑appearance, and incorporate the TLS fingerprint (Google Trust Services / WE1) into threat‑intel feeds. Continuous re‑scanning on multi‑engine platforms such as VirusTotal is recommended to capture any changes in detection status.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Cakupan data12 recorded checks
Intelijen Keamanan Jaringan Registrar context
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-09 02:09:51 UTC
Teknologi · 1 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Keyakinan 100%Analisis VirusTotal
Bukti Terarsip
Analisis Konfigurasi Situs
Bukti & Laporan EksternalIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.