As of July 30, 2026, the domain rhinofi-dex.com has been identified as a high-risk generic phishing domain. Analysis indicates that the domain is currently active and has appeared on one security blocklist. The domain is registered through Fewmoretaps OU d/b/a Trustname.com and resolves to the IP address 186.2.175.109. It is blocked by PhishDestroy, a known security solution.
The domain was created on July 22, 2026, suggesting a recent and potentially ongoing threat. Infrastructure analysis reveals that the domain uses nameservers ares.trustname.com, ns1.anycastdns.cz, ns2.anycastdns.cz, and zeus.trustname.com. While the exact content of the website has not been analyzed, the domain's registration and resolution details, along with its appearance on a security blocklist, indicate that it is likely being used for phishing activities.
Defenders should monitor for any communications or traffic involving this domain and consider blocking it to prevent potential compromises. The domain's activity and resolution to a known IP address further suggest that it is part of a broader infrastructure used for malicious purposes. Given the high risk level, immediate action is recommended to mitigate the threat.