rez-sushi[.]pro
“Stake SUSHI | Sushi”
rez-sushi.pro — Conteúdo indisponível (HTTP 502). Representação da marca: SushiSwap; Tipo de golpe: Crypto Scam. Resumo das evidências: VirusTotal 8/93 (alphaMountain.ai, BitDefender, CyRadar, Fortinet, G-Data); URLScan malicious verdict; PhishDestroy score 85/100. Registrador: NameSilo.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, rez-sushi.pro, was registered on 25 June 2025 through NameSilo, LLC. The site presents the page title “Stake SUSHI | Sushi”, indicating a direct attempt to mimic the SushiSwap brand. Infrastructure analysis shows the domain resolves to IP address 107.172.83.150, which belongs to the HostPapa hosting provider (AS36352) located in the United States. The SSL certificate is identified as “R11”, and the Gridinsoft trust score is 0 / 100, highlighting a lack of credibility. VirusTotal scans have flagged the domain on 8 of 93 security vendors, and the domain is listed on the PhishDestroy blocklist, confirming that at least one reputable blocklist has recognized it as malicious. The threat is classified as a crypto scam that impersonates SushiSwap, and the risk level has been assessed as elevated.
The site is currently offline, which may indicate that the operators have taken it down or are rotating infrastructure. At present, no additional infrastructure such as command‑and‑control servers or related domains has been observed, so the full scope of the campaign remains unclear. Defenders should treat any traffic to rez-sushi.pro as potentially dangerous. Block the domain at the DNS, proxy, and firewall layers and monitor for any connections to the associated IP 107.172.83.150.
Because the registrar is NameSilo, consider rapid takedown requests if the domain reappears. Continuous monitoring of threat‑intelligence feeds for re‑registration or new IP assignments is advised. The limited detection footprint—only eight VirusTotal detections and a single blocklist entry—suggests the campaign may be in an early stage or using low‑profile hosting. Nonetheless, the combination of brand impersonation, a zero‑trust score, and the presence on a security blocklist warrants proactive defensive measures, including updating web‑filter rules to flag the “Stake SUSHI” page title and alerting SOC analysts to any user reports involving SushiSwap‑related phishing attempts.
Inteligência de segurança de rede Registrar context
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo