MALICIOUS — CRITICAL
Проверка домена gamberx.com на фишинг и безопасность
gamberx[.]
The domain gamberx.com is currently active and has been classified as a generic phishing site targeting credential collection.
- VirusTotal
- 15/91
- Blocklists
- 2 · MetaMask, SEAL
- Доступность
- Контент недоступен · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
gamberx.com — Контент недоступен (HTTP 502). Олицетворение бренда: MetaMask. Сводка доказательств: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Evidence Analysis
The domain gamberx.com is currently active and has been classified as a generic phishing site targeting credential collection. Infrastructure analysis indicates that the domain is listed on three reputable security blocklists and has been actively blocked by the PhishDestroy, MetaMask, and SEAL filtering solutions. On VirusTotal, fifteen of ninety‑one AV and URL scanners returned a positive detection, reinforcing the malicious reputation. The three blocklist entries include commonly used feeds that distribute phishing URLs to enterprise security appliances, indicating that the domain has been observed in active campaigns. The detection count of 15/91 on VirusTotal reflects that a notable subset of scanning engines, including both static URL scanners and behavioral sandboxes, have identified malicious characteristics, though the remaining sixty‑six engines did not flag the domain, suggesting possible variation in detection heuristics.
The limited public data does not disclose the registrar, hosting IP, SSL certificate details, or HTTP response codes, and no Safe Browsing or OTX entries were observed in the supplied intelligence. Likewise, page title and brand targeting information are not available, preventing confirmation of the exact phishing lure employed. Given the presence on multiple blocklists and the multi‑vendor detections, defenders should assume the domain is being used to harvest user credentials and block any outbound connections to it. Network firewalls and DNS filtering should be updated to deny resolutions for gamberx.com.
Endpoint protection solutions should be configured to block URLs matching the domain and to quarantine any files flagged by the fifteen VirusTotal detections. Incident response teams should monitor logs for attempts to contact the domain and consider user education campaigns highlighting the risk of unsolicited credential requests.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Охват данных12 recorded checks
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Анализ VirusTotal
Доказательства и внешние отчетыIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.