Notification and current-status evidence
The sent-report ledger records the first outgoing report at . It contains 6 outgoing records; the latest is dated . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
guweu[.]com
“Guweu: Most Popular Online Crypto Casino Based on Blockchain”
The domain guweu.com was registered on September 19, 2025 through PDR Ltd. d/b/a PublicDomainRegistry.com and resolves to the Cloudflare address 104.21.12.151, which belongs to ASN 13335 (Cloudflare, Inc.) in the United States. The site presents a page title of "Guweu: Most Popular Online Crypto Casino Based on Blockchain," and analysis attributes the hosting of a known Gambler Scam phishing kit to the infrastructure. The SSL certificate is issued by Google Trust Services under the WE1 series, confirming that the site uses Cloudflare's managed TLS service. An HTTP request returns a 200 status code, indicating that the front‑end is reachable.
VirusTotal has flagged the domain on 14 of 93 security vendor scans, and the domain appears on three external blocklists. Additional block‑list sources such as PhishDestroy, MetaMask, and SEAL have already listed guweu.com as malicious. The Gridinsoft trust score of 1 out of 100 further reflects the low credibility of the hosting environment. The domain is currently marked as active, and the nameservers in use are hadlee.ns.cloudflare.com and ruben.ns.cloudflare.com.
While the precise content of the page beyond the title has not been publicly examined, the combination of a recent registration, low trust score, presence of a gambling‑oriented phishing kit, multiple vendor detections, and active blocklist entries strongly suggests a high‑risk crypto‑scam operation. Defenders should proactively block DNS resolution and HTTP traffic to guweu.com, add the IP address 104.21.12.151 to network denial lists, and monitor for any credential‑harvesting attempts that reference the "Guweu" branding. Continuous re‑evaluation is advised in case the site evolves, but the current evidence warrants immediate mitigation.
भेजी गई रिपोर्ट का रिकॉर्ड
भेजे गए प्रमाण का स्नैपशॉट
- भेजा गया
- लेज़र रिकॉर्ड
- 1
- केस आईडी
PD-1770575149-guweu.com- PDF दस्तावेज़
- PDF प्रमाण
रिपोर्ट इतिहास 6
- रिपोर्ट 1 Phishing Abuse Report: guweu[.]com
- रिपोर्ट 2 ⚠️ ESCALATION #3 (148h active): Phishing - guweu[.]com
- रिपोर्ट 3 ⚠️ ESCALATION #4 (583h active): Phishing - guweu[.]com
- रिपोर्ट 4 ⚠️ ESCALATION #5 (616h active): Phishing - guweu[.]com
- रिपोर्ट 6 ⚠️ ESCALATION #6 (1697h active): Phishing - guweu[.]com
- रिपोर्ट 7 ⚠️ ESCALATION #7 (2051h active): Phishing - guweu[.]com
सुरक्षा संकेत
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 स्रोत · 10/08/2026 को सिंक किया गया
पहचान समयरेखा
संग्रहीत अवलोकन कालानुक्रमिक क्रम में।
-
संग्रहीत अवलोकन
संग्रहीत अवलोकन: alive → dead
-
Cloudflare Radar
Cloudflare Radar: पहली बार https://radar.cloudflare.com/scan/87564936-9636-420d-bad6-66df4db0ceac के रूप में देखा गया
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।