smartwise-rewardsclub[.]com
“SMARTWISE REWARDS CLUB”
smartwise-rewardsclub.com — Non vérifié. Résumé des preuves: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 83/100. Bureau d’enregistrement: Realtime.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
smartwise-rewardsclub.com was observed responding with HTTP 200 and serving a page titled “SMARTWISE REWARDS CLUB”. The site is classified as a generic phishing campaign and carries a high risk rating. Its registration date of May 14, 2026 and active status indicate recent deployment. The domain resolves to IP 138.128.175.66, which is hosted by HostDime.com, Inc. in the United States.
Infrastructure analysis shows the domain was registered through Realtime Register B.V. The authoritative name servers are dns33270.dizinc.com and dns33271.dizinc.com, and the MX record points to the same host name, suggesting limited mail functionality. The web server runs Apache HTTP Server and delivers content built with Bootstrap, jQuery, Google Hosted Libraries, and a reCAPTCHA widget. Communication is protected by a Let’s Encrypt R13 certificate, and the site advertises a valid SSL handshake.
Threat intelligence sources corroborate the malicious assessment. Gridinsoft assigns a trust score of 0 out of 100. The domain appears on three security blocklists and is listed as blocked by PhishDestroy, MetaMask, and SEAL. AlienVault OTX includes the domain in a single pulse, and VirusTotal records one positive detection out of ninety‑five scanners. These indicators collectively reinforce the phishing characterization despite the low number of vendor flags.
Defenders should prioritize immediate blocking of both the domain and its resolved IP address at perimeter and DNS layers. Monitoring of the associated name servers and the host range of HostDime.com may uncover related payloads. Because the site uses common front‑end libraries, heuristic detection that inspects reCAPTCHA usage together with low Gridinsoft scores can improve early identification. Continuous feed updates from the listed blocklists are recommended to maintain coverage.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies · 5 identified
Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com Confiance à 100 %Apache is a free and open-source cross-platform web server software.
httpd.apache.org Confiance à 100 %reCAPTCHA is a free service from Google that helps protect websites from spam and abuse.
www.google.com Confiance à 100 %jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com Confiance à 100 %Google Hosted Libraries is a stable, reliable, high-speed, globally available content distribution network for the most popular, open-source JavaScript libraries.
developers.google.com Confiance à 100 %Analyse VirusTotal
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif