benewix[.]top
“Benewix: Donald Trump’s Leading Blockchain Crypto Casino”
benewix.top — सामग्री अनुपलब्ध. ब्रांड प्रतिरूपण: Genericcrypto; घोटाले का प्रकार: Crypto Scam. साक्ष्य सारांश: VirusTotal 16/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLQuery 1 alert; URLScan malicious verdict; PhishDestroy score 95/100. रजिस्ट्रार: Global Domain Group.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Analysis of benewix.top indicates a confirmed crypto scam domain leveraging the Gambler Scam phishing kit, targeting users with fraudulent blockchain-based gambling services. The domain was registered on February 21, 2026, through Global Domain Group LLC and is currently offline as of the report date. Infrastructure analysis reveals the domain resolves to IP address 172.67.214.210, hosted on Cloudflare’s network (AS13335) in the United States. Nameservers darl.ns.cloudflare.com and naya.ns.cloudflare.com further confirm Cloudflare’s involvement in its hosting infrastructure.
Security vendor detections are notable: 16 of 93 engines on VirusTotal flagged the domain as malicious, and it appears on at least one security blocklist, specifically PhishDestroy. The absence of an SSL certificate is a red flag, as modern phishing domains typically employ encryption to evade detection. The page title, 'Benewix: Donald Trump’s Leading Blockchain Crypto Casino,' suggests a deliberate attempt to exploit political branding and cryptocurrency trends to lure victims. Technologies detected include Twitter Ads and Facebook Pixel, indicating potential cross-platform advertising campaigns to drive traffic to the scam.
The Gambler Scam classification aligns with the domain’s purported crypto casino theme, though the exact mechanics of the fraud—such as withdrawal restrictions, fake bonuses, or wallet-draining schemes—remain unconfirmed due to the domain’s offline status. Defenders should treat this domain as high-risk and block it at the DNS or proxy level. Monitoring for re-emergence under similar naming conventions or Cloudflare-hosted infrastructure is recommended. Given the use of social media tracking pixels, security teams should also investigate associated ad accounts or campaigns for further indicators of compromise.
नेटवर्क सुरक्षा इंटेलिजेंस
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | benewix.top |
malicious | Sinkholed |
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
दुरुपयोग रिपोर्ट इतिहास · 2 stored reports over 25 days · click to expand
-
Report #1 Escalation 238h still active Feb 8, 2026 · 18:17 UTCESCALATION #2 (238h active): Phishing - benewix[.]topabuse@globaldomaingroup.com
-
Report #2 ICANN CC 821h still active Mar 5, 2026 · 01:37 UTCESCALATION #3 (821h active): Phishing - benewix[.]topresellers@globaldomaingroup.com abuse@nic.top compliance@icann.org
तकनीकें · 4 identified
Conversion and audience tracking pixel for paid campaigns on X (Twitter) — signals that the site runs paid X ads.
business.x.comConversion-tracking pixel by Meta — logs page views and custom events to Facebook/Instagram ad accounts.
www.facebook.comPerformance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comवायरसटोटल विश्लेषण
संग्रहीत साक्ष्य
साक्ष्य और बाहरी रिपोर्टें
PD-20260129-74C412 Recipient: resellers@globaldomaingroup.com क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।