fortrev[.]vu
“Check the value of your inventory - Fortnite”
证据摘要
Analysis of fortrev.vu, observed on July 22, 2026, indicates an elevated‑risk brand‑impersonation campaign targeting Epic Games users. The domain was registered through Dynadot LLC on 25 November 2025 and resolves to the Cloudflare‑owned address 188.114.96.3 (AS13335, United States). Both authoritative nameservers—emely.ns.cloudflare.com and pete.ns.cloudflare.com—point to Cloudflare’s DNS infrastructure, confirming that the hosting provider is Cloudflare. No TLS certificate is presented; the site serves only HTTP, which simplifies interception and reduces credential‑protecting mechanisms.
The page title retrieved from the live host reads “Check the value of your inventory – Fortnite,” directly referencing the Epic Games title Fortnite and suggesting a gaming‑related inventory valuation scam. Gridinsoft’s trust score assigns a rating of 0 out of 100, reflecting an extremely low reputation. On VirusTotal, one of ninety‑three scanned security engines flagged the domain, and the domain appears on a single external blocklist (PhishDestroy). The same blocklist has taken the domain offline, and current scans show the site is no longer reachable.
Observed indicators are limited to infrastructure and meta‑data; the site’s content has not been captured, leaving the exact phishing tactics unverified. Defenders should continue to block the IP address 188.114.96.3 and the associated Cloudflare ASN, enforce DNS‑level deny‑list rules for fortrev.vu, and monitor for any re‑registration of similar second‑level domains. Threat‑intel feeds should incorporate the domain, its registrar, and the observed nameservers to aid correlation with future campaigns. Continuous re‑scanning on VirusTotal or comparable platforms is advised to capture any changes in detection rate as the infrastructure evolves.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
检测时间线
-
Cloudflare Radar
已存储 Cloudflare Radar 扫描 · 打开扫描
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控