smartwise-rewardsclub[.]com
“SMARTWISE REWARDS CLUB”
smartwise-rewardsclub.com — Непроверенный. Сводка доказательств: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 83/100. Регистратор: Realtime.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
smartwise-rewardsclub.com was observed responding with HTTP 200 and serving a page titled “SMARTWISE REWARDS CLUB”. The site is classified as a generic phishing campaign and carries a high risk rating. Its registration date of May 14, 2026 and active status indicate recent deployment. The domain resolves to IP 138.128.175.66, which is hosted by HostDime.com, Inc. in the United States.
Infrastructure analysis shows the domain was registered through Realtime Register B.V. The authoritative name servers are dns33270.dizinc.com and dns33271.dizinc.com, and the MX record points to the same host name, suggesting limited mail functionality. The web server runs Apache HTTP Server and delivers content built with Bootstrap, jQuery, Google Hosted Libraries, and a reCAPTCHA widget. Communication is protected by a Let’s Encrypt R13 certificate, and the site advertises a valid SSL handshake.
Threat intelligence sources corroborate the malicious assessment. Gridinsoft assigns a trust score of 0 out of 100. The domain appears on three security blocklists and is listed as blocked by PhishDestroy, MetaMask, and SEAL. AlienVault OTX includes the domain in a single pulse, and VirusTotal records one positive detection out of ninety‑five scanners. These indicators collectively reinforce the phishing characterization despite the low number of vendor flags.
Defenders should prioritize immediate blocking of both the domain and its resolved IP address at perimeter and DNS layers. Monitoring of the associated name servers and the host range of HostDime.com may uncover related payloads. Because the site uses common front‑end libraries, heuristic detection that inspects reCAPTCHA usage together with low Gridinsoft scores can improve early identification. Continuous feed updates from the listed blocklists are recommended to maintain coverage.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 5 identified
Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com 100% уверенностиApache is a free and open-source cross-platform web server software.
httpd.apache.org 100% уверенностиreCAPTCHA is a free service from Google that helps protect websites from spam and abuse.
www.google.com 100% уверенностиjQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% уверенностиGoogle Hosted Libraries is a stable, reliable, high-speed, globally available content distribution network for the most popular, open-source JavaScript libraries.
developers.google.com 100% уверенностиАнализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание