Why this matters — ICANN RAA §3.18 obligation & victim-assistance
On PhishDestroy delivered an evidence-backed abuse report
(repeated 5 times, most recently ) to abuse-tracker@hostinger.com with the evidence stored for the case at that time.
More than 6 months later, the phishing infrastructure remains reachable
.
Under ICANN RAA §3.18 accredited registrars are contractually obliged to “take reasonable and prompt steps to investigate and respond appropriately to any reports of abuse.” Silence beyond 24 hours after a documented notification with verifiable evidence is not a timing issue — it is a policy decision to let the operation continue. PhishDestroy\'s position: where a registrar fails to act on clear evidence, the registrar has aligned itself with the operator of the scheme and bears co-responsibility for downstream harm caused to victims from the moment of notification onward.
Victim-assistance obligation. If HOSTINGER operations, UAB doesn't consider the listed detections enough proof — that is interesting in itself, given the volume of independent vendor confirmations. But after 5 separate notifications over 6 months, with the operation still active, the registrar took no measurable action to mitigate the harm caused by their client. The reasonable next step is direct help to any identified victims — contact & payment-trail disclosure, abuse-thread transcripts, registrant data preservation — since the registrar chose, by inaction, to extend the window of damage.
cryptonovaexchange[.]com
Проверка домена cryptonovaexchange.com на фишинг и безопасность
“CryptoNova Exchange — Intercambio cripto ágil en MX”
cryptonovaexchange.com: VirusTotal — 1 срабатываний из 93. Проверьте DNS, SSL, регистратора, блок-листы и данные об угрозах.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
PhishDestroy first observed cryptonovaexchange.com on Dec 27, 2025. Evidence score: 71/100 (a triage score, not a probability).
Threat signals: 1 of 93 VirusTotal engines flagged the domain on Jul 18, 2026 at 18:45 UTC. External blocklists: 2 matches (ScamSniffer, CryptoFirewall) in the snapshot from Aug 6, 2026 at 06:20 UTC.
No conclusive timestamped HTTP response is available; current reachability is unverified.
Other observations: Google Safe Browsing recorded no flag on Mar 3, 2026 at 04:14 UTC. AlienVault OTX recorded 0 community pulse references on Mar 1, 2026 at 13:42 UTC. Spamhaus DBL recorded no positive result on Jul 14, 2026 at 14:32 UTC. URLScan captured the domain on Feb 24, 2026 at 01:21 UTC. Negative or missing results do not establish safety.
Context: registrar HOSTINGER operations, UAB, IP address 188.114.96.3. Infrastructure details may have changed since collection.
This report summarizes time-bound observations, not a live guarantee. Avoid interacting with the domain; submit an appeal if the report is inaccurate.
Сигналы безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
ICANN получила деньги. Подотчётность так и не появилась.
Для этой gTLD указанный выше регистратор работает по договору с ICANN. ICANN взимает ежегодные, переменные и транзакционные сборы, связанные с регистрациями, продлениями и трансферами.
Аккредитация: монетизирована. Подотчётность: пожалуйста, проверьте позже.
Затем начинается магия: ICANN пишет RAA §3.18, регистратор расследует злоупотребления внутри собственной клиентской базы, а жертвы бесплатно предоставляют доказательства, пока каждый уровень ждёт, что действовать начнёт кто-то другой. Если благодаря этому жертвы чувствуют себя в большей безопасности — отлично: счёт сделал своё дело.
История жалоб на злоупотребления · 5 stored reports over 34 days · click to expand
-
Report #1 Jan 31, 2026 · 20:11 UTCPhishing Abuse Report: cryptonovaexchange[.]comabuse-tracker@hostinger.com
-
Report #2 Escalation 190h still active Feb 8, 2026 · 18:21 UTCESCALATION #2 (190h active): Phishing - cryptonovaexchange[.]comabuse-tracker@hostinger.com
-
Report #3 ICANN CC 726h still active Mar 3, 2026 · 02:49 UTCESCALATION #3 (726h active): Phishing - cryptonovaexchange[.]comabuse-tracker@hostinger.com abuse@verisign-grs.com compliance@icann.org
-
Report #4 ICANN CC 762h still active Mar 4, 2026 · 15:05 UTCESCALATION #4 (762h active): Phishing - cryptonovaexchange[.]comabuse-tracker@hostinger.com abuse@verisign-grs.com compliance@icann.org
-
Report #5 ICANN CC 806h still active Mar 6, 2026 · 10:37 UTCESCALATION #5 (806h active): Phishing - cryptonovaexchange[.]comabuse-tracker@hostinger.com abuse@verisign-grs.com compliance@icann.org
Технологии · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
“Malicious Website”
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Об этом отчете: cryptonovaexchange.com
В этом отчете представлены последние сохраненные доказательства, доступные PhishDestroy. Временные метки источника отображаются там, где они доступны; Вердикты о доступности и поставщика могут измениться после сбора.
Захваченный сайт отображал заголовок страницы “CryptoNova Exchange — Intercambio cripto ágil en MX”.
Начиная с 06.08.2026, cryptonovaexchange.com обнаруживался механизмами безопасности 1.
Если вы считаете, что это объявление неточно, подать апелляцию. Чтобы узнать о нашей методологии, посетите Страница часто задаваемых вопросов.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание