Why this matters — ICANN RAA §3.18 obligation
On PhishDestroy delivered an evidence-backed abuse report
to abuse@globaldomaingroup.com with the evidence stored for the case at that time.
More than 6 months later, the phishing infrastructure remains reachable
.
Under ICANN RAA §3.18 accredited registrars are contractually obliged to “take reasonable and prompt steps to investigate and respond appropriately to any reports of abuse.” Silence beyond 24 hours after a documented notification with verifiable evidence is not a timing issue — it is a policy decision to let the operation continue. PhishDestroy\'s position: where a registrar fails to act on clear evidence, the registrar has aligned itself with the operator of the scheme and bears co-responsibility for downstream harm caused to victims from the moment of notification onward.
zynox[.]cc
zynox.cc 피싱 및 보안 점검
“Zynox”
zynox.cc — 서버 오류 (HTTP 521). 증거 요약: VT 5/91 (alphaMountain.ai, Chong Lua Dao, Forcepoint ThreatSeeker, Gridinsoft, Webroot); URLQuery 0; URLScan no malicious verdict; GSB no flag; BL 0; PD 78/100. 등록기관: Global Domain Group.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
PhishDestroy first observed zynox.cc on Jan 30, 2026. The current evidence record is rated high at 78/100. 1 independent source recorded positive findings: VirusTotal.
VirusTotal recorded 5 detections among 91 engines: alphaMountain.ai, Chong Lua Dao, Forcepoint ThreatSeeker, Gridinsoft, Webroot on Jul 26, 2026 at 03:21 UTC. The external blocklist snapshot contained no matches on Aug 7, 2026 at 14:20 UTC. URLQuery recorded no positive detection. Google Safe Browsing returned no flag on Mar 2, 2026 at 20:28 UTC. URLScan completed without a malicious verdict on Jan 30, 2026 at 06:24 UTC.
HTTP 521 server error was recorded on Aug 7, 2026 at 10:32 UTC. Registration records for the domain list Global Domain Group LLC as the registrar. At collection time, the domain resolved to 188.114.96.3 on AS13335 (Cloudflare, Inc.). The stored server header is cloudflare. Captured page title: “Zynox”. DOM analysis completed on Jul 9, 2026 at 06:20 UTC; stored DOM score 78/100. IoC extraction completed on Jul 29, 2026 at 02:38 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators. TLS metadata lists WE1 as the certificate issuer with validity through Jun 2, 2026; checked Mar 15, 2026 at 05:59 UTC.
A stored capture reference is available for visual review. No target brand has been confirmed from stored page content; hostname wording alone is not treated as brand evidence. No content-derived scam subtype is stored.
네트워크 보안 인텔리전스
위협 대응 Pipeline
공개 차단 목록 상태
사용 기술 · 9 identified
JavaScript runtime built on Chrome V8 engine for server-side development.
JavaScript library for building user interfaces with component-based architecture.
React framework for production with hybrid static and server rendering.
Cloud computing platform offering compute, storage, and networking services.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comModule bundler for modern JavaScript applications.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 분석
보관된 증거
사이트 성능 분석
Google PageSpeed Insights — mobile performance audit of zynox.cc · checked Mar 2, 2026
증거 및 외부 보고서
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.