Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@nicenic.net.
The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
vs1reward[.]com
“VS1 Rewards â Multi-Stream Yield on Tokenized Capital Markets”
vs1reward.com — Acessível · acesso restrito (HTTP 403). Tipo de golpe: Generic Phishing. Resumo das evidências: VirusTotal 4/91 (Fortinet, Gridinsoft, LevelBlue, SOCRadar); URLQuery 1 alert; Spamhaus DBL_PHISH; PhishDestroy score 66/100. Registrador: NiceNIC.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
PhishDestroy identifies vs1reward.com as a live rewards scam designed to trick users into entering personal information under the guise of a fake loyalty program. This domain mimics legitimate reward portals and may distribute malware or harvest credentials through deceptive login forms. Users who interact with the site risk financial loss and identity theft, as stolen data can be sold on dark web markets or used in subsequent cyberattacks.
This domain was flagged by PhishDestroy’s automated threat pipeline and shows no detections on VirusTotal as of the latest scan (4/95 engines), indicating it is currently under the radar of most security tools. The site resolves to IP 172.67.139.149 and was registered on April 20, 2026 through NICENIC INTERNATIONAL GROUP CO., LIMITED using a Let’s Encrypt SSL certificate to appear trustworthy. Its recent creation and low detection rate make it particularly dangerous for unsuspecting visitors.
If you visited vs1reward.com, immediately stop sharing any information and disconnect from the site. Do not log in or submit personal or payment details. Scan your device using a reputable antivirus tool—such as Malwarebytes, Windows Defender, or Bitdefender—to check for malware or spyware. Clear your browser cache and cookies, especially those related to login sessions, and consider changing passwords for critical accounts using a different, secure device. Report the site to your local cybercrime unit or through platforms like Google Safe Browsing and PhishDestroy’s public portal to help block it globally.
Inteligência de segurança de rede Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | vs1reward.com |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-13 02:30:42 UTC
Tecnologias · 4 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% de confiançaCloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% de confiançaCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% de confiançaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% de confiançaAnálise do VirusTotal
Evidências e relatórios externos
PD-20260427-F64329 Recipient: abuse@nicenic.net Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo