Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 7 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
xevorixa[.]net
“Xevorixa - Oficjalna Platforma | Trading AI 2025 | Ponad 10.000 Opinii”
Сводка доказательств
Analysis indicates that the domain xevorixa.net was registered on 21 February 2026 through PDR Ltd. d/b/a PublicDomainRegistry.com. The zone is configured to use Cloudflare nameservers emely.ns.cloudflare.com and matias.ns.cloudflare.com and resolves to the IP address 188.114.97.3, which belongs to AS13335 Cloudflare, Inc. and is geolocated in the United States. No TLS certificate is present, leaving the site without encrypted transport. The site is currently taken offline, but historical data show a page title of “Xevorixa - Oficjalna Platforma | Trading AI 2025 | Ponad 10.000 Opinii”, which suggests a marketing‑focused landing page that references the brand argent. The threat classification is brand impersonation, and the risk level has been assigned as elevated.
Security‑vendor scans on VirusTotal report that two of ninety‑three scanners flagged the domain as malicious, indicating a low but non‑zero detection rate. Gridinsoft assigns a trust score of 0 out of 100, and the domain appears on a single public blocklist, specifically PhishDestroy, confirming that at least one community‑driven feed has recognized it as abusive. The lack of an SSL certificate, combined with the low trust score and blocklist presence, increases confidence that the domain was used for fraudulent purposes. Uncertainty remains regarding the exact content and functionality of the site because it is offline and no deeper content analysis is available.
The page title alone points to a possible attempt to lure users interested in AI‑driven trading services, leveraging the argent brand to gain credibility. Defenders should block DNS resolution for xevorixa.net, add the IP 188.114.97.3 to network‑level deny lists, and monitor for any future attempts to re‑register the domain or use the same Cloudflare nameservers. Continuous observation of threat‑intel feeds for additional detections, especially from other sandbox or URL‑reputation services, is recommended.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260107-DF9128- PDF-файл
- PDF с доказательствами
Полный текст доказательств
Acceptable Use Policy (AUP): The domain xevorixa.net is engaged in phishing activities, which are explicitly prohibited under your AUP. This constitutes a clear violation of the policy against deception and fraud.
Terms of Service (TOS): The ongoing use of this domain for illegal activities violates your TOS, which reserves the right to suspend or terminate services for any such infractions.
Applicable Laws (PL):
Act on Combating Unfair Competition (Ustawa o zwalczaniu nieuczciwej konkurencji): This law prohibits misleading advertising and fraudulent practices, which are applicable to the phishing activities associated with this domain.
Criminal Code of Poland (Kodeks karny): Articles 286 and 287 address computer fraud and phishing, making such activities punishable under Polish law.
Regulatory Note: Failure to take immediate action against this domain may expose your organization to legal liability and regulatory scrutiny under both national and international laws. Prompt compliance is essential to mitigate potential risks.
Data Coverage
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS0 Zero | xevorixa.net |
malicious | Sinkholed |
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 12.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание