MALICIOUS — HIGH
Pemeriksaan phishing dan keamanan nesofex.com
nesofex[.]
This domain, nesofex.com, is flagged as an active high-risk generic phishing site, specifically identified as a Gambler Scam phishing kit targeting the brand Nesofex, described as a blockchain-based crypto casino.
- VirusTotal
- 2/91
- Blocklists
- 2 · MetaMask, SEAL
- Ketersediaan
- Dapat dijangkau · akses dibatasi · HTTP 403
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@dynadot.com.
The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
Jump to section
nesofex.com — Dapat dijangkau · akses dibatasi (HTTP 403). Peniruan identitas merek: Genericcrypto; Jenis penipuan: Brand Impersonation. Ringkasan bukti: VirusTotal 2/91 (ADMINUSLabs, Fortinet); URLQuery 1 alert; URLScan malicious verdict; Spamhaus DBL_SPAM; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Registrar: Dynadot.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Evidence Analysis
This domain, nesofex.com, is flagged as an active high-risk generic phishing site, specifically identified as a Gambler Scam phishing kit targeting the brand Nesofex, described as a blockchain-based crypto casino. Registered on November 20, 2025, through Dynadot Inc, the domain uses Cloudflare nameservers and resolves to IP 104.21.29.1, hosted in Canada by Cloudflare. The SSL certificate is issued by Google Trust Services. Security vendor detection is significant, with 18 of 91 engines on VirusTotal flagging the domain, and it appears on three security blocklists. The domain is blocked by PhishDestroy, MetaMask, and SEAL. The Gridinsoft trust score is 0/100. The HTTP status is 200, indicating the site is operational. Defenders should treat this domain as confirmed malicious, block all traffic to it and its associated IP, and monitor for any subdomains or related infrastructure. Given the crypto casino theme, users may be lured with promises of gambling or investment returns; any credentials or cryptocurrency wallet interactions should be considered compromised. No other brands or specific threat indicators beyond the listed scam type and page title are present in the known intelligence. The exact page content beyond the title has not been analyzed, but the phishing kit classification confirms malicious intent.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Cakupan data12 recorded checks
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | nesofex.com |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisis VirusTotal
Bukti Terarsip
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of nesofex.com · checked May 8, 2026
Bukti & Laporan EksternalIndependent lookups and source reports
PD-20260508-FA27AD Recipient: abuse@dynadot.com Victim safety and official reportingImmediate actions and verified reporting channels
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.