Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@nicenic.net.
The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
buterex[.]com
Análisis de phishing y seguridad de buterex.com
buterex.com — Accesible · acceso restringido (HTTP 403). Tipo de estafa: Social Media Phishing. Resumen de las pruebas: VirusTotal 6/91 (alphaMountain.ai, Chong Lua Dao, CRDF, Forcepoint ThreatSeeker, Fortinet); Spamhaus DBL_PHISH; PhishDestroy score 68/100. Registrador: NiceNIC.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
Evidence Analysis
The domain buterex.com is a generic phishing site designed to deceive users through social media phishing tactics. It does not impersonate a specific brand or employ a known crypto drainer kit. As of the latest verification, buterex.com has been taken offline, reducing immediate risk but not eliminating the potential for future malicious activity.
Technical analysis reveals that buterex.com was flagged by 2 of 95 security vendors on VirusTotal, including Fortinet and SOCRadar. The domain was registered through NiceNIC International Group Co., Limited on February 21, 2026, and resolves to the IP address 188.114.96.3, hosted on Cloudflare's infrastructure (AS13335). It appears on 1 security blocklist (PhishDestroy) and uses an SSL certificate issued by Google Trust Services / WE1. The observed page title was 'Just a moment...', and the site employed Cloudflare and HTTP/3 technologies. Gridinsoft assigned a trust score of 0/100, while Scamadviser rated it 40/100, reflecting elevated risk indicators.
Users who may have interacted with buterex.com should take immediate steps to secure their accounts. If credentials were entered, change passwords for all affected platforms and enable two-factor authentication (2FA) where available. Monitor accounts for unauthorized activity and report any suspected fraud to the relevant service providers. To report the phishing domain, submit it to platforms like Google Safe Browsing, PhishTank, or local cybersecurity authorities for further investigation.
Cobertura de los datos13 recorded checks
Señales de seguridad
Inteligencia de seguridad de red Registrar context
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
ICANN OVERSIGHT
Acreditación y contexto RAA
Acreditación y contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-09 02:43:02 UTC
Inteligencia forense
Tecnologías · 2 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Análisis de VirusTotal
Evidencias archivadas
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of buterex.com · checked Apr 12, 2026
Datos y informes externosIndependent lookups and source reports
PD-20260213-1F75A5 Recipient: abuse@nicenic.net Victim safety and official reportingImmediate actions and verified reporting channels
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.