Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 7 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
everenx[.]com
“EverenX - Offizielle Plattform | KI-Trading 2025 | Über 10.000 Bewertungen”
Сохранённое наблюдение
Зафиксированное различие заголовков
Сводка доказательств
everenx.com was registered on 2026-02-21 through PDR Ltd. d/b/a PublicDomainRegistry.com and resolves to the Cloudflare edge address 104.21.55.254 (AS13335, United States). The domain serves a page titled “EverenX - Offizielle Plattform | KI‑Trading 2025 | Über 10.000 Bewertungen”, suggesting a fraudulent cryptocurrency‑trading narrative. The SSL certificate is issued by Google Trust Services under the WE1 profile, confirming that TLS termination is provided by Cloudflare. HTTP requests return a 403 status, and as of the report date the site is taken offline.
The infrastructure is protected by Cloudflare’s DNS service, using the authoritative nameservers norah.ns.cloudflare.com and patrick.ns.cloudflare.com. Threat intelligence classifies the activity as social‑media phishing that impersonates Binance, and the domain appears on a single security blocklist. VirusTotal analysis shows that 1 of 93 scanning engines flagged the domain, while Gridinsoft assigns a trust score of 0 / 100, indicating a high confidence of malicious intent. PhishDestroy has already blocked the domain.
No additional payloads or malicious scripts have been observed because the site does not serve content at the time of analysis. Defenders should continue to block the domain at network and DNS layers, add it to internal phishing blocklists, and monitor for any related C2 infrastructure or newly registered look‑alike domains. Users should be warned that any unsolicited communication referencing Binance that directs to everenx.com is likely fraudulent, and they should be instructed to verify URLs against official Binance domains before entering credentials.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260107-26B991- Заголовок сохранённой страницы
- EverenX - Offizielle Plattform | KI-Trading 2025 | Über 10.000 Bewertungen
- PDF-файл
- PDF с доказательствами
Полный текст доказательств
Acceptable Use Policy (AUP): The domain everenx.com is engaged in phishing activities, which constitutes a clear violation of your AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The use of this domain for fraudulent purposes directly contravenes your TOS, which reserves the right to suspend or terminate services for such violations.
Applicable Laws (PL):
Act of 18 July 2002 on the Provision of Services by Electronic Means (Dz.U. 2002 nr 144 poz. 1204): This law prohibits the provision of services that facilitate illegal activities, including phishing.
Criminal Code of Poland (Ustawa z dnia 6 czerwca 1997 r. - Kodeks karny, Dz.U. 1997 nr 88 poz. 553): Articles 286 and 287 address fraud and computer-related crimes, making phishing a prosecutable offense.
Regulatory Note: Failure to take immediate action against this domain may expose your organization to legal liability and regulatory scrutiny under both national and international laws. Prompt compliance is essential to mitigate potential risks.
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Статус домена
Доступен → Недоступен
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
-
Статус домена
Недоступен → Доступен
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии
Выявлена 1 технология с высокой уверенностью
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание