selvarindrix[.]org
Análisis de phishing y seguridad de selvarindrix.org
“Selvarindrix - Sito Ufficiale in Italia [2025]”
selvarindrix.org — Contenido no disponible (HTTP 502). Suplantación de marca: Argent; Tipo de estafa: Brand Impersonation. Resumen de las pruebas: VT 16/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLQuery 0; URLScan malicious; GSB no flag; BL 0; PD 100/100. Registrador: PDR.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
PhishDestroy first observed selvarindrix.org on Jan 23, 2026. Positive findings were recorded by VirusTotal and URLScan. Evidence score: 100/100.
VirusTotal recorded 16 detections among 93 engines: ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar, Emsisoft, Forcepoint ThreatSeeker, Fortinet on Feb 23, 2026 at 11:49 UTC. URLScan returned a malicious verdict with score 100 on Mar 28, 2026 at 12:29 UTC. AlienVault OTX listed 1 community pulse reference (not vendor detections) on Mar 1, 2026 at 11:24 UTC. The external blocklist snapshot contained no matches on Aug 7, 2026 at 10:20 UTC. URLQuery recorded no positive detection. Google Safe Browsing returned no flag on Mar 3, 2026 at 04:14 UTC. PhishStats returned no feed match on Mar 2, 2026 at 11:12 UTC.
HTTP 502 was recorded on Aug 7, 2026 at 01:25 UTC; content was unavailable. Registration records list PDR Ltd. d/b/a PublicDomainRegistry.com as the registrar and Jan 21, 2026 as the registration date. At collection time, the domain resolved to 104.21.58.235. Collected metadata identifies Argent as the apparent target. Captured page title: “Selvarindrix - Sito Ufficiale in Italia [2025]”. PhishDestroy classified the observed content as Brand Impersonation. DOM analysis completed on Apr 23, 2026 at 07:21 UTC; stored DOM score 10/100. IoC extraction completed on Aug 2, 2026 at 04:16 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators.
Stored full analysis23/07/2026
Analysis of selvarindrix.org, observed as of July 23 2026, shows a high‑risk brand‑impersonation infrastructure targeting the brand “argent”. The domain was registered on 21 January 2026 through PDR Ltd. d/b/a PublicDomainRegistry.com and currently resolves to IP 104.21.58.235, which belongs to Cloudflare, Inc. (AS13335) and is geolocated in the United States. No TLS certificate is presented; the site serves without HTTPS, indicating a lack of encryption. Authoritative nameservers are ns1.suspended-domain.com and ns2.suspended-domain.com, both suggesting a disposable or suspended hosting environment. The page title returned from the site, “Selvarindrix - Sito Ufficiale in Italia [2025]”, does not reference the impersonated brand and implies a generic Italian‑language landing page.
Reputation services flag the domain extensively. Gridinsoft assigns a trust score of 0 / 100, and VirusTotal reports that 16 of 93 scanning engines label the domain as malicious. The domain appears on three public blocklists and is listed in a single AlienVault OTX pulse. Additionally, it is blocked by PhishDestroy, MetaMask, and SEAL, reinforcing the consensus that the site is being used for malicious purposes. The combination of a fresh registration, low trust score, absence of TLS, and multiple independent detections aligns with the declared scam type of brand impersonation.
Uncertainty remains regarding the specific payload or credential‑harvesting mechanisms employed, as no content analysis or URL paths have been disclosed. Defenders should therefore treat any traffic to selvarindrix.org as hostile. Recommended mitigation steps include adding the domain to network‑level deny lists, updating web filtering solutions, and monitoring for any DNS queries to the associated IP address. Incident response teams should also consider correlating logs for attempts to contact the domain with other known argent‑related phishing campaigns to assess potential broader targeting.
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
ICANN OVERSIGHT
Acreditación y contexto RAA
Acreditación y contexto RAA
ICANN cobró. La rendición de cuentas no llegó.
Para este gTLD, el registrador indicado arriba opera bajo un contrato con ICANN. ICANN cobra tasas anuales, variables y basadas en transacciones vinculadas a registros, renovaciones y transferencias.
Acreditación: monetizada. Rendición de cuentas: vuelva a comprobarlo más tarde.
Entonces empieza la magia: ICANN redacta el RAA §3.18, el registrador investiga los abusos dentro de su propia base de clientes y las víctimas aportan las pruebas gratis, mientras cada nivel espera que actúe otro. Si eso hace que las víctimas se sientan más seguras, excelente: la factura funcionó.
Análisis de VirusTotal
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Acerca de este informe: selvarindrix.org
Este informe presenta la última evidencia almacenada disponible para PhishDestroy. Las marcas de tiempo de origen se muestran cuando están disponibles; La disponibilidad y los veredictos de los proveedores pueden cambiar después de la recolección.
El sitio capturado mostraba el título de la página “Selvarindrix - Sito Ufficiale in Italia [2025]” y puede estar haciéndose pasar por Argent.
A partir de 07/08/2026, selvarindrix.org tuvo detecciones de los motores de seguridad 16.
Si cree que esta lista es inexacta, presentar una apelación. Para conocer nuestra metodología, visita el Página de preguntas frecuentes.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.