haiwax[.]com
haiwax.com için kimlik avı ve güvenlik kontrolü
“Haiwax: Most Popular Online Crypto Casino Based on Blockchain”
haiwax.com — İçerik kullanılamıyor (HTTP 502). Marka kimliğine bürünme: Genericcrypto; Dolandırıcılık türü: Crypto Scam. Kanıt özeti: VirusTotal 15/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLQuery 3 alerts; URLScan malicious verdict; Spamhaus DBL_PHISH; PhishDestroy score 95/100. Kayıt kuruluşu: NiceNIC.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
On 23 July 2026 the domain haiwax.com was observed to be hosted behind Cloudflare (AS13335) in the United States and resolved to IP 188.114.96.3. The site presented a page titled “Haiwax: Most Popular Online Crypto Casino Based on Blockchain,” indicating an attempt to lure users into a cryptocurrency‑focused gambling service. No TLS certificate was detected, meaning the site was served over plain HTTP, which is atypical for legitimate financial platforms and further corroborates malicious intent. Registration records show the domain was created on 21 February 2026 through NiceNIC International Group Co., Limited, and it employs the Cloudflare authoritative nameservers destiny.ns.cloudflare.com and elias.ns.cloudflare.com.
Threat intelligence links the site to the publicly known “Gambler Scam” phishing kit and classifies the operation as a crypto‑scam. VirusTotal analysis recorded 15 positive detections out of 93 scanning engines, and the domain appears on the PhishDestroy blocklist, providing independent confirmation of its malicious nature. The risk level has been assessed as elevated, and the current operational status is offline, suggesting the site has been taken down, although cached copies may persist in third‑party services. Uncertainty remains regarding the specific payload or credential‑stealing mechanisms delivered to visitors, as no additional page content or download URLs have been disclosed.
Defenders should continue to block DNS resolution for haiwax.com, enforce HTTPS‑only policies to mitigate exposure to similar plain‑HTTP scams, and monitor Cloudflare‑associated IP ranges for repeat activity. Intrusion‑prevention systems should be updated with signatures associated with the “Gambler Scam” kit, and security teams should audit any internal hosts that accessed the domain before it was taken offline for signs of compromise.
Ağ Güvenliği İstihbaratı Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | haiwax.com |
phishing | Phishing Block |
| DNS4EU | haiwax.com |
malicious | Sinkholed |
| Hagezi Threat Feed | haiwax.com |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-08 03:55:52 UTC
VirusTotal Analizi
Arşivlenmiş Kanıtlar
Kanıtlar ve Dış Raporlar
PD-20260214-946B49 Recipient: abuse@nicenic.net Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin