horkas[.]com
Проверка домена horkas.com на фишинг и безопасность
“HORKAS | Play at the best online casino based on Blockchain”
horkas.com — Контент недоступен (HTTP 502). Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 2/95 (alphaMountain.ai, Forcepoint ThreatSeeker); URLQuery 100 det.; PhishDestroy score 100/100. Регистратор: NameSilo.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of the domain horkas.com indicates it was actively involved in a cryptocurrency-based gambling scam, classified under the Gambler Scam phishing kit. The domain was registered on July 19, 2025, through NameSilo, LLC, and resolved to the IP address 69.5.189.55, hosted on AS42624 (Global-Data System IT Corporation) located in Switzerland. The page title, 'HORKAS | Play at the best online casino based on Blockchain,' explicitly positions the site as a blockchain gambling platform, aligning with the reported scam type of a crypto scam. No SSL certificate was detected, increasing the risk of unencrypted data transmission.
Infrastructure analysis reveals the domain used nameservers ns1.nameserverhub.com, ns2.nameserverhub.com, ns3.nameserverhub.com, and ns4.nameserver, which may be associated with other malicious campaigns, though further correlation is required. The domain appears on one security blocklist, specifically PhishDestroy, and was flagged by 2 of 95 security vendors on VirusTotal. Gridinsoft assigned a trust score of 1 out of 100, further corroborating its malicious classification. As of the report date, the domain has been taken offline, though residual risks may persist if the infrastructure is reused.
Defenders should treat this domain as part of a broader crypto-gambling phishing operation. Monitoring for re-registration or IP reuse under new domains is recommended. Organizations should update blocklists to include horkas.com and its associated IP, and consider flagging related nameserver infrastructure for further scrutiny. The exact content and functionality of the site remain unanalyzed, but the available evidence confirms its role in fraudulent activity targeting cryptocurrency users.
Сигналы безопасности
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание