Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 21 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
morawex[.]com
“Morawex: Most Popular Online Crypto Casino Based on Blockchain”
Сводка доказательств
This domain, morawex.com, is currently under investigation for credential theft phishing activity. Analysis indicates no direct association with known brand impersonation or crypto drainer kits at this stage. The threat type is classified as credential theft, targeting login credentials through deceptive landing pages designed to mimic legitimate services. No specific brand affiliation has been confirmed, but the domain exhibits characteristics consistent with credential harvesting infrastructure. Technical indicators reveal a VirusTotal detection score of 0/95, suggesting no antivirus engines have flagged the domain as malicious to date. The domain was registered through an undisclosed registrar, and its hosting infrastructure resolves to an IP address not yet publicly disclosed. The SSL certificate is issued by Google Trust Services, a common certificate authority, which does not inherently indicate malicious intent but is frequently leveraged by threat actors to lend legitimacy to phishing sites. Google Safe Browsing (GSB) status remains unlisted, and no blocklist entries have been recorded as of the latest assessment. The domain's creation date is not publicly available in current intelligence feeds. Current status remains active and under investigation, with no confirmed takedown or sinkholing actions. Response actions include continuous monitoring for changes in detection status, registrar updates, or shifts in hosting infrastructure. Users are advised to exercise caution when encountering this domain, particularly if prompted for login credentials or personal information. Organizations should consider implementing network-level blocks or browser-based warnings for this domain until further intelligence confirms its legitimacy or malicious intent. Remaining risk is classified as elevated due to the absence of detections coupled with the domain's active status and potential for credential theft.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-1784736262-morawex.com- PDF-файл
- PDF с доказательствами
История сообщений 1
- Сообщение № 1 ⚠️ ESCALATION #1 (0h active): Phishing - morawex[.]com
Data Coverage
Данные сетевой безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 12.08.2026
7 внешних источников под наблюдением Совпадений нет
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии
Выявлено 3 технологии с высокой уверенностью
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of morawex.com · checked Jul 11, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание