neurovest-es[.]com
“NeuroVest - Plataforma Oficial | Trading IA 2025 | Más de 10.000 Reseñas”
neurovest-es.com — Контент недоступен. Олицетворение бренда: Argent; Тип мошенничества: Brand Impersonation. Сводка доказательств: VirusTotal 1/93 (SOCRadar); PhishDestroy score 55/100. Регистратор: Gransy, s.r.o.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of the domain neurovest-es.com indicates a brand impersonation scheme targeting users of Argent, a known financial platform. The domain was registered on February 21, 2026, through Gransy, s.r.o., and is currently offline following detection by security vendors. Infrastructure analysis reveals Cloudflare hosting (AS13335) with nameservers logan.ns.cloudflare.com and sonia.ns.cloudflare.com, resolving to the IP 172.67.129.52 in the United States. No SSL certificate was present at the time of assessment, increasing the risk of unencrypted data interception. The page title, 'NeuroVest - Plataforma Oficial | Trading IA 2025 | Más de 10.000 Reseñas,' suggests an attempt to mimic a legitimate trading platform by leveraging AI and social proof claims.
While the exact content of the site remains unanalyzed, the title and known intelligence confirm the domain’s role in brand impersonation. One security vendor flagged the domain on VirusTotal, and it appears on at least one security blocklist, including PhishDestroy. AlienVault OTX also lists the domain in a threat intelligence pulse, further corroborating its malicious classification. Defenders should treat this domain as high-risk due to its association with brand impersonation and absence of basic security measures like SSL.
The short lifespan (registered in February 2026 and taken offline by July 2026) aligns with typical phishing domain behavior, where rapid takedowns follow detection. Organizations should block the domain at the DNS level and monitor for related infrastructure, such as Cloudflare-hosted subdomains or similar naming patterns. Given the lack of SSL and the use of a registrar with a history of abuse, additional scrutiny of related domains registered through Gransy, s.r.o. is recommended.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
PD-20260107-4BEF20 Recipient: abuse@regtons.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание