Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@nicenic.net.
The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
vexosa155[.]vg
“Vexosa155: Most Popular Online Crypto Casino Based on Blockchain”
vexosa155.vg — Encoberto · alcançável (HTTP 200). Representação da marca: Genericcrypto; Tipo de golpe: Generic Phishing. Resumo das evidências: VirusTotal 14/91 (ADMINUSLabs, alphaMountain.ai, Bfore.Ai PreCrime, BitDefender, ESET); URLQuery 2 alerts; URLScan malicious verdict; Spamhaus DBL_PHISH; cloaking observed; PhishDestroy score 100/100. Registrador: NiceNIC.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, vexosa155.vg, is an active phishing infrastructure linked to a Gambler Scam operation. Registered on April 4, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED, the domain currently resolves to 188.114.97.3, a Cloudflare-hosted IP located in Canada. Analysis indicates the use of Cloudflare nameservers (arushi.ns.cloudflare.com and arvind.ns.cloudflare.com) and a Let's Encrypt SSL certificate (E7), which are common in phishing campaigns to obscure hosting details and appear legitimate. The domain is flagged by 18 of 94 security vendors on VirusTotal and appears on at least one security blocklist, including PhishDestroy, which has blocked access with an HTTP 403 status. Gridinsoft and Scamadviser both assign a trust score of 1/100, reinforcing its high-risk classification. The Gambler Scam phishing kit is confirmed to be deployed on this infrastructure, though the exact content or targeted brands remain unanalyzed at this stage. Defenders should treat this domain as a confirmed malicious asset. Blocking resolution to 188.114.97.3 and monitoring for related subdomains or certificate reuse (Let's Encrypt E7) is recommended. Given its active status and low detection friction, assume persistence and prioritize containment. No evidence suggests takedown or mitigation as of July 12, 2026.
Inteligência de segurança de rede Registrar context
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Latest Classified Outcome 2026-08-18 03:29:48 UTC
Análise do VirusTotal
Evidências arquivadas
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of vexosa155.vg · checked Apr 5, 2026
Evidências e relatórios externos
PD-20260404-9B1FA3 Recipient: abuse@nicenic.net Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo