Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 7 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
everenx[.]com
“EverenX - Offizielle Plattform | KI-Trading 2025 | Über 10.000 Bewertungen”
Observation enregistrée
Contraste de titres observé
Résumé des preuves
everenx.com was registered on 2026-02-21 through PDR Ltd. d/b/a PublicDomainRegistry.com and resolves to the Cloudflare edge address 104.21.55.254 (AS13335, United States). The domain serves a page titled “EverenX - Offizielle Plattform | KI‑Trading 2025 | Über 10.000 Bewertungen”, suggesting a fraudulent cryptocurrency‑trading narrative. The SSL certificate is issued by Google Trust Services under the WE1 profile, confirming that TLS termination is provided by Cloudflare. HTTP requests return a 403 status, and as of the report date the site is taken offline.
The infrastructure is protected by Cloudflare’s DNS service, using the authoritative nameservers norah.ns.cloudflare.com and patrick.ns.cloudflare.com. Threat intelligence classifies the activity as social‑media phishing that impersonates Binance, and the domain appears on a single security blocklist. VirusTotal analysis shows that 1 of 93 scanning engines flagged the domain, while Gridinsoft assigns a trust score of 0 / 100, indicating a high confidence of malicious intent. PhishDestroy has already blocked the domain.
No additional payloads or malicious scripts have been observed because the site does not serve content at the time of analysis. Defenders should continue to block the domain at network and DNS layers, add it to internal phishing blocklists, and monitor for any related C2 infrastructure or newly registered look‑alike domains. Users should be warned that any unsolicited communication referencing Binance that directs to everenx.com is likely fraudulent, and they should be instructed to verify URLs against official Binance domains before entering credentials.
Instantané des preuves transmises
- Envoyé
- Entrées du registre
- 1
- ID du dossier
PD-20260107-26B991- Titre de la page capturée
- EverenX - Offizielle Plattform | KI-Trading 2025 | Über 10.000 Bewertungen
- Artefact PDF
- Preuve PDF
Texte intégral des preuves
Acceptable Use Policy (AUP): The domain everenx.com is engaged in phishing activities, which constitutes a clear violation of your AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The use of this domain for fraudulent purposes directly contravenes your TOS, which reserves the right to suspend or terminate services for such violations.
Applicable Laws (PL):
Act of 18 July 2002 on the Provision of Services by Electronic Means (Dz.U. 2002 nr 144 poz. 1204): This law prohibits the provision of services that facilitate illegal activities, including phishing.
Criminal Code of Poland (Ustawa z dnia 6 czerwca 1997 r. - Kodeks karny, Dz.U. 1997 nr 88 poz. 553): Articles 286 and 287 address fraud and computer-related crimes, making phishing a prosecutable offense.
Regulatory Note: Failure to take immediate action against this domain may expose your organization to legal liability and regulatory scrutiny under both national and international laws. Prompt compliance is essential to mitigate potential risks.
Data Coverage
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 11/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
État du domaine
Accessible → Inaccessible
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
-
État du domaine
Inaccessible → Accessible
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies
1 technologie identifiée avec une forte confiance
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif