MALICIOUS — CRITICAL
inventory[.]rest
PhishDestroy identifies active phishing infrastructure hosted at inventory.rest, an impostor site masquerading as a legitimate inventory management portal.
- VirusTotal
- 11/92
- Blocklists
- No stored match
- Доступність
- Прикритий · доступний · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
inventory.rest — Прикритий · доступний (HTTP 502). Уособлення бренду: Fortnite; Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 11/92 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, CRDF, CyRadar); URLQuery 1 alert; URLScan malicious verdict; cloaking observed; PhishDestroy score 83/100. Реєстратор: Global Domain Group.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
PhishDestroy identifies active phishing infrastructure hosted at inventory.rest, an impostor site masquerading as a legitimate inventory management portal. The domain poses as a generic business service to harvest corporate credentials and sensitive inventory data from unwitting users. No specific brand or drainer kit has been conclusively linked at this time, but behavioral patterns resemble credential-harvesting campaigns targeting procurement and logistics personnel. The threat is classified as credential phishing with elevated risk due to active hosting, low detection coverage, and plausible naming alignment with legitimate inventory services.
This domain was flagged by 7 out of 95 VirusTotal security vendors, indicating limited but real detection across enterprise and consumer security stacks. It is registered through Global Domain Group LLC, resolves to IP address 188.114.97.3, and was created on February 07, 2026. The site employs a Google Trust Services SSL certificate, suggesting an attempt to appear legitimate. Despite this, the domain remains unlisted in Google Safe Browsing (GSB) and is not currently blocked by major threat intelligence feeds, highlighting a detection gap.
The campaign is currently active with elevated risk potential, targeting users searching for inventory solutions. Immediate response includes adding 188.114.97.3 and inventory.rest to network and endpoint blocklists. Users should avoid accessing the site and verify any inventory-related communications through official channels. While the domain is newly registered and lacks broad threat coverage, its rapid deployment and SSL deployment indicate an evolving threat. Remaining risk remains elevated due to active campaigning and low initial detection, necessitating proactive blocking and user awareness.
Обсяг даних12 recorded checks
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | inventory.rest |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 4 identified
Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Докази та зовнішні звітиIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.