Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
korvix[.]ru[.]com
“Acceso al Sistema”
Resumo das evidências
This domain, korvix.ru.com, is currently flagged as posing a potential threat of crypto drainer activities. This type of threat involves malicious actors attempting to drain cryptocurrencies from unsuspecting users by luring them into providing sensitive information such as private keys or wallet credentials. The domain's page title, "Index of /", coupled with its current active status, raises suspicions about its intent to engage in illicit activities associated with cryptocurrency theft.
The analysis of this domain shows that it has not been flagged by any of the 95 security vendors on VirusTotal, which means it might still evade detection by many security systems. It resolves to the IP address 66.116.246.223, indicating it is hosted on a server that could potentially be used for malicious purposes. The domain is still under investigation, and its registration details, such as the registrar, are crucial to further understanding its legitimacy and identifying its operators.
If you have visited korvix.ru.com, it is critical to refrain from entering any personal or financial information. Check your devices for any unusual activities or unauthorized access attempts immediately. Update your security software to ensure it can detect the latest threats, and consider changing any passwords associated with your cryptocurrency accounts. Reporting this domain to relevant authorities can also aid in the investigation and help prevent potential victims from falling prey to this threat. Stay informed and vigilant against emerging cybersecurity risks.
Instantâneo das evidências enviadas
- Enviado
- Registros do livro-razão
- 1
- ID do caso
PD-20260702-864F7F- Título da página capturada
- Acceso al Sistema
- Artefato PDF
- Evidência em PDF
Texto completo da evidência
Policy Violations: Explicit policy to immediately suspend domains used for phishing, 419 scams, identity fraud, malware distribution without prior notice
Applicable Laws: IT Act 2000 §§66C–66D (identity theft, cheating by personation), Indian Penal Code §420 / Bharatiya Nyaya Sanhita §318 (fraud)
Data Coverage
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 13/08/2026
10 fontes externas monitoradas Sem correspondência
Tecnologias
2 tecnologias identificadas com alta confiança
Análise do VirusTotal
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo