mainnetverse[.]com
“Document”
Resumo das evidências
mainnetverse.com was registered on May 13 2025 through the registrar Sav.com, LLC. The domain resolves to the IPv4 address 107.172.61.186, which is assigned to AS36352 operated by HostPapa in the United States. The server presents a Let’s Encrypt R13 certificate and advertises LiteSpeed web server with HTTP/3 support. The only observed page title is “Document”, and no additional content has been publicly captured. VirusTotal records show that 2 of 95 scanned security vendors flagged the domain, indicating a low but non‑zero detection ratio.
The domain appears on a single security blocklist and has been actively blocked by the PhishDestroy sink‑hole service. Gridinsoft assigns a trust score of 0 / 100, reinforcing the malicious assessment. As of the report date, the site is listed as taken offline, which limits real‑time verification of any phishing payloads that may have been hosted. Defenders should continue to monitor the associated IP address 107.172.61.186 for any resurgence of malicious activity, enforce outbound filtering to prevent connections to this host, and add the domain to internal blocklists.
Because the page content has not been captured, threat actors may have used the domain as a short‑lived drop‑site for credential‑harvesting pages, a common pattern for generic phishing campaigns. Correlation with other indicators of compromise (e.g., similar certificate usage or host‑provider footprints) is recommended to identify possible campaign reuse. Until further evidence emerges, the prudent stance is to treat traffic to mainnetverse.com as malicious and block it at the network perimeter.
Data Coverage
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 10/08/2026
10 fontes externas monitoradas Sem correspondência
Linha do tempo de detecção
-
VirusTotal
2 → 4
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, nomes TLS e datas
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análise do VirusTotal
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo