rewards-access[.]icu
“Access Rewards — Turn everyday banking into Naira”
rewards-access.icu — Konten tidak tersedia. Ringkasan bukti: VirusTotal 10/91 (alphaMountain.ai, BitDefender, CRDF, CyRadar, Forcepoint ThreatSeeker); URLQuery 1 alert; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 100/100. Registrar: PDR.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
The domain rewards-access.icu is currently active and was registered on July 20, 2026 through PDR Ltd. d/b/a PublicDomainRegistry.com. Infrastructure analysis shows the domain resolves to the IPv4 address 95.85.228.201 and is served by Cloudflare DNS using the nameservers carrera.ns.cloudflare.com and henrik.ns.cloudflare.com. The domain appears on three external security blocklists and has been explicitly blocked by PhishDestroy, MetaMask, and the SEAL project, indicating that multiple threat‑intelligence feeds have identified it as malicious.
VirusTotal scans have recorded three positive detections out of ninety‑five scanning engines, confirming that at least a subset of AV products consider the domain suspicious. No publicly available page title, brand target, or content snapshot has been disclosed, so the specific victim lure remains unknown. However, the classification as generic phishing is supported by the blocklist entries and the detection count.
Defenders should immediately add rewards-access.icu to DNS and proxy blocklists, enforce blocking of its hosting IP 95.85.228.201, and monitor for any outbound connections to that address. Continuous re‑evaluation of the domain's status on security feeds is advised, as additional indicators such as payload samples or phishing kit fingerprints may emerge. Organizations using email or web filtering solutions should ensure the domain is denied at the perimeter to mitigate potential credential‑ harvesting attempts.
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | rewards-access.icu |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ZONA SHORTDOT · BUKTI PUBLIK
.icu
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknologi · 7 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org Keyakinan 100%Ubuntu is a free and open-source operating system on Linux for the enterprise server, desktop, cloud, and IoT.
www.ubuntu.com Keyakinan 100%React is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org Keyakinan 100%Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org Keyakinan 100%Next.js is a React framework for developing single page Javascript applications.
nextjs.org Keyakinan 100%Facebook pixel is an analytics tool that allows you to measure the effectiveness of your advertising.
facebook.com Keyakinan 100%Analisis VirusTotal
Bukti Terarsip
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of rewards-access.icu · checked Jul 22, 2026
Bukti & Laporan Eksternal
PD-20260722-2A43F7 Recipient: abuse@publicdomainregistry.com Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive