Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is domain@apiname.com.
The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
zorewex[.]com
Проверка домена zorewex.com на фишинг и безопасность
“Zorewex: Most Popular Online Crypto Casino Based on Blockchain”
zorewex.com — Последний известный активный (HTTP 200). Олицетворение бренда: Genericcrypto; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 13/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, ESET); URLQuery 100 det.; URLScan malicious verdict; PhishDestroy score 100/100. Регистратор: Atak Domain.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
zorewex.com is an active internet resource that has been identified as a cryptocurrency phishing operation. The site presents itself as “Zorewex: Most Popular Online Crypto Casino Based on Blockchain” in its page title, suggesting an attempt to lure victims interested in crypto gambling. The domain was created on October 04, 2025 and remains reachable, returning HTTP status 200.
The domain resolves to the IP address 172.67.141.124, which belongs to Cloudflare, Inc. (AS13335) and is physically located in the United States. Authoritative name resolution is handled by the Cloudflare nameservers thomas.ns.cloudflare.com and venus.ns.cloudflare.com. Transport security is provided by a Google Trust Services certificate labeled WE1, indicating a valid TLS handshake. The site is currently listed on one security blocklist and has been blocked by the PhishDestroy service.
Threat intelligence flags the site with a Gridinsoft trust score of 1 out of 100 and classifies the malicious content as a “Gambler Scam” phishing kit. VirusTotal scans report that 13 of 95 security vendors flag the domain as malicious, reinforcing the high‑risk assessment. The combination of a low trust score, presence of a known gambling‑oriented phishing kit, and multiple vendor detections aligns with the high‑risk rating assigned to the domain.
Defenders should add 172.67.141.124 and the domain zorewex.com to block lists across perimeter and endpoint solutions. Continuous monitoring of DNS queries for the associated Cloudflare nameservers can help detect future re‑hosting attempts. Users should be warned against unsolicited invitations to crypto casino platforms and instructed to verify TLS certificates before entering credentials. Incident response teams should treat any credential submissions to this domain as compromised and initiate credential rotation.
Сигналы безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
PD-1772795381-zorewex.com Recipient: domain@apiname.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание