MALICIOUS — CRITICAL
3jir[.]org
3 of 95 security engines flagged the domain; the latest stored check returned HTTP 301.
- VirusTotal
- 3/95
- Blocklists
- No stored match
- Доступність
- Останній відомий активний · HTTP 301
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@nicenic.net.
The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
Jump to section
3jir.org — Останній відомий активний (HTTP 301). Зведення доказів: VirusTotal 3/95 (Fortinet, Gridinsoft, SOCRadar); Spamhaus DBL_PHISH; PhishDestroy score 71/100. Реєстратор: NiceNIC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Digest
3jir.org is classified critical with an evidence score of 71/100. 3 of 95 security engines flagged the domain. Registration metadata recorded via NiceNIC International Group Co., Limited, hosted on 104.26.9.249 (CLOUDFLARENET - Cloudflare, Inc., US, US). The latest stored check on 9 Aug 2026 returned HTTP 301 and includes a capture. 1 outgoing abuse report is recorded, most recently on 13 Feb 2026.
Stored generated summary (templated)deepseek-v3 · 23.06.2026
Retained for the record. This text repeats stored detection facts and is not presented as authored analysis.
The domain 3jir.org displayed the page title "Just a moment..." indicating it was likely a placeholder or redirect page, not a functional site. Based on the domain name and lack of content, it does not appear to impersonate a known brand. The threat posed is unclear from available data, but the domain's low trust rating and flagging by multiple security vendors suggest it may have been used for malicious purposes, such as hosting malware, phishing, or other harmful content.
Technical evidence shows the domain was flagged by 3 out of 95 VirusTotal vendors, specifically Fortinet, Gridinsoft, and SOCRadar. It is listed on 1 blocklist. The domain was registered on 2026-02-21 through NiceNIC International Group Co., Limited, a registrar often associated with high-risk domains. It was hosted on IP address 104.21.63.54 in the United States, belonging to AS13335 Cloudflare, Inc. The SSL certificate was issued by Google Trust Services / WE1. Nameservers were jim.ns.cloudflare.com and kehlani.ns.cloudflare.com.
The domain is currently offline or down. GridinSoft assigned it a trust rating of 0 out of 100, indicating high risk. Given the low trust score, multiple vendor flags, recent creation date, and offline status, the risk level is assessed as high. The domain should be blocked and avoided.
Обсяг даних12 recorded checks
Розвіддані з мережевої безпеки Registrar context
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-09 02:42:51 UTC
Технології · 2 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Аналіз VirusTotal
Архівні докази
Докази та зовнішні звітиIndependent lookups and source reports
PD-20260213-21E8D0 Recipient: abuse@nicenic.net Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.