MALICIOUS — HIGH
Pemeriksaan phishing dan keamanan nevodex.com
nevodex[.]
Domain nevodex.com has been flagged as a generic phishing domain with signs of cryptocurrency drainer activity.
- VirusTotal
- 1/91
- Blocklists
- No stored match
- Ketersediaan
- Dapat dijangkau · akses dibatasi · HTTP 403
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@trustname.com.
The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
Jump to section
nevodex.com — Dapat dijangkau · akses dibatasi (HTTP 403). Peniruan identitas merek: Genericcrypto; Jenis penipuan: Brand Impersonation. Ringkasan bukti: VirusTotal 1/91 (Netcraft); URLScan malicious verdict; PhishDestroy score 58/100. Registrar: Fewmoretaps OU d/b/a T….
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Evidence Analysis
Domain nevodex.com has been flagged as a generic phishing domain with signs of cryptocurrency drainer activity. No specific brand impersonation or drainer kit has been confirmed at this stage, but the domain's recent registration and infrastructure suggest malicious intent aimed at harvesting digital assets. The domain was created on April 27, 2026, aligning with observed patterns of short-lived malicious domains designed to evade detection. While no definitive drainer kit fingerprint has been identified, the absence of legitimate use cases and the domain's association with suspicious IP infrastructure warrants heightened scrutiny. Security researchers should monitor for updates as this investigation continues. This domain resolves to IP address 188.114.97.3 and utilizes a Let's Encrypt SSL certificate, attempting to appear legitimate. VirusTotal currently reports 0 detections out of 95 scanners, indicating it remains under the radar but not necessarily benign. The domain was registered through Fewmoretaps OU, doing business as Trustname.com, a registrar known for limited oversight in domain vetting processes. The registration date places the domain at less than one week old, drastically reducing the window for proactive blocking by security systems reliant on reputation. No Google Safe Browsing (GSB) blocklist inclusion has been recorded, and the current blocklist count stands at zero, further emphasizing the need for immediate preventive measures. As of this report, the threat status of nevodex.com is classified as active and under investigation, with no confirmed resolution path identified. Given the domain's recent creation and lack of detection, users are urged to avoid interactions and implement immediate network-level blocks for IP 188.114.97.3. The risk level remains classified as under_investigation due to pending forensic analysis, but the combination of zero detections, cryptocurrency-oriented phishing indicators, and youthful infrastructure signals a high potential for malicious activity. Security teams should prioritize monitoring for this domain and consider it a credible threat until further intelligence becomes available.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Cakupan data13 recorded checks
Intelijen Keamanan Jaringan Registrar context
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknologi · 4 identified
Twitter Ads is an advertising platform for Twitter 'microblogging' system.
ads.twitter.com Keyakinan 100%Facebook pixel is an analytics tool that allows you to measure the effectiveness of your advertising.
facebook.com Keyakinan 100%Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com Keyakinan 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Keyakinan 100%Analisis VirusTotal
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of nevodex.com · checked May 3, 2026
Bukti & Laporan EksternalIndependent lookups and source reports
PD-20260503-E4424C Recipient: abuse@trustname.com Victim safety and official reportingImmediate actions and verified reporting channels
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.