Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
nexotexfx[.]ltd
“nexotexfx.ltd - Home”
Kaydedilmiş tespit
Gizleme uyarısı
- Gizleme türü
status_split- Gizleme puanı
- 2/6
Kanıt özeti
The domain nexotexfx.ltd has been identified as a credential harvesting phishing site targeting users of the OLITT platform. Analysis indicates the domain is currently offline, though it previously hosted a fraudulent login portal designed to capture sensitive authentication details. The threat type is classified as generic phishing with an elevated risk level due to its deceptive infrastructure and targeting of user credentials. Infrastructure analysis reveals the domain was registered on February 21, 2026, through NameSilo, LLC, and resolves to the IP address 151.80.4.15. It appears on one security blocklist and is flagged by 3 of 95 security vendors on VirusTotal. The domain holds a Gridinsoft trust score of 0/100, indicating no legitimate reputation. It employs an SSL certificate issued by DigiCert Inc, which may be used to lend false credibility to the phishing attempt. Detected technologies include Google Cloud, Nginx, and Google Cloud CDN, suggesting the use of cloud-based hosting to evade detection and enhance scalability. Current status confirms the domain has been taken offline, reducing immediate risk to users. However, the infrastructure remains registered and could be reactivated. Organizations and individuals are advised to block the domain and its associated IP (151.80.4.15) at the network perimeter. Security teams should monitor for related domains registered through NameSilo or resolving to the same IP range. Users who may have interacted with the domain should reset credentials for any accounts accessed during the exposure window and enable multi-factor authentication where available. Proactive threat hunting for indicators of compromise, including the domain name and SSL certificate details, is recommended to identify potential breaches.
Gönderilen kanıt anlık görüntüsü
- Gönderildi
- Kayıt defteri kayıtları
- 1
- Vaka kimliği
PD-20260207-A49762- Yakalanan sayfa başlığı
- OLITT
- PDF belgesi
- PDF kanıtı
Hukuki dayanak
Kanıtın tam metni
Section 3.1 of the AUP: The domain nexotexfx.ltd is engaged in phishing activities, which are explicitly prohibited under your Acceptable Use Policy.
Section 5.2 of the TOS: The registrar reserves the right to suspend services for any fraudulent activities; the operation of this domain constitutes a clear violation of this provision.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. federal law prohibits unauthorized access to computers and networks, which is relevant given the phishing nature of the domain.
Wire Fraud Statute (18 U.S.C. § 1343): This law criminalizes schemes to defraud using electronic communications, applicable to the fraudulent activities associated with this domain.
Anti-Phishing Consumer Protection Act: This act aims to combat phishing by imposing penalties on those who engage in deceptive practices to obtain sensitive information.
Regulatory Note: Failure to take immediate action against this domain may result in legal repercussions for non-compliance with both your internal policies and applicable laws. It is imperative to act swiftly to mitigate potential liability.
Data Coverage
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 11.08.2026
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknolojiler
3 yüksek güvenli teknoloji belirlendi
VirusTotal Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin