norvix[.]in
Resumen de las pruebas
Analysis of the domain norvix.in shows that it was registered on 21 February 2026 through Web Commerce Communications Ltd. The authoritative name servers are ns100.webnic.cc and ns101.webnic.cc, both belonging to the WebNIC hosting platform. Within a few weeks of registration the site was used for a generic phishing campaign and was subsequently taken offline. Current intelligence indicates that the domain is listed on two security blocklists and has been actively blocked by the anti‑phishing services PhishDestroy and ScamSniffer.
VirusTotal scans recorded three positive detections out of ninety‑three submitted security vendors, confirming malicious intent despite the limited number of alerts. No additional infrastructure details such as hosting IP, ASN, or TLS configuration are available in the shared data set, leaving the full scope of the supporting infrastructure uncertain.
Defenders should add norvix.in to domain‑based deny lists, enforce DNS sink‑holing, and monitor the registrar Web Commerce Communications Ltd. for any new registrations that reuse the same name servers. Continuous re‑scanning on VirusTotal or similar platforms is advised to capture any resurgence, and any future resolution of the domain should be treated as high‑confidence phishing activity pending further analysis.
Data Coverage
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 12/08/2026
9 fuentes externas supervisadas Sin coincidencias
Inteligencia de dominios
Detalles técnicosDNS, nombres TLS y marcas de tiempo
Inteligencia forense
Análisis de VirusTotal
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.