MALICIOUS — HIGH
beriex[.]com
Analysis indicates that the domain beriex.com was registered through NameSilo, LLC and created on March 03, 2026.
- VirusTotal
- 2/94
- Blocklists
- No stored match
- Доступність
- Контент недоступний · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
beriex.com — Контент недоступний (HTTP 502). Уособлення бренду: Ethereum; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 2/94 (SOCRadar, URLQuery); URLQuery 1 alert; PhishDestroy score 62/100. Реєстратор: NameSilo.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
Analysis indicates that the domain beriex.com was registered through NameSilo, LLC and created on March 03, 2026. The authoritative nameservers athena.ns.cloudflare.com and coby.ns.cloudflare.com resolve the domain to the IP address 104.21.61.210, which belongs to Cloudflare, Inc. (AS13335) and is geolocated in the United States. No TLS certificate was observed for the host, meaning HTTPS connections are not secured. The public page title returned when the site was reachable reads “Buy & Sell Bitcoin, Ethereum | Cryptocurrency Exchange | Beriex”, directly referencing cryptocurrency trading and matching the declared scam type of a crypto scam. The content explicitly impersonates the Ethereum brand, satisfying the listed brand‑target of Ethereum and confirming a brand‑impersonation motive.
VirusTotal analysis shows that two of ninety‑four scanning engines flagged the domain as malicious, providing independent vendor corroboration of suspicious activity. The domain is listed on a single security blocklist and has been added to the PhishDestroy blocklist, demonstrating that at least one external mitigation service has taken action against it. The current operational status is offline, which may be the result of takedown efforts or intentional shutdown by the operators.
Defenders should continue to monitor the IP address 104.21.61.210 for any reuse in other malicious campaigns, given the shared Cloudflare infrastructure. Network‑level blocks can be applied to the domain while it remains offline, and any future resolution to the same IP should be treated as high‑risk. Because the site lacked an SSL certificate, attempts to force HTTPS would fail, offering a possible detection vector. The absence of a valid TLS certificate means that the site could not have offered encrypted login forms, but the lack of HTTPS does not preclude other credential‑stealing techniques.
Обсяг даних12 recorded checks
Розвіддані з мережевої безпеки Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Nextron YARA rules | beriex.com/assets/landings/4/maingif.gif |
malware | Detects files with GIF headers and format anomalies - which means that this image could be an obfuscated file of a different type |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of beriex.com · checked Mar 3, 2026
Докази та зовнішні звітиIndependent lookups and source reports
PD-20260303-47B2C1 Recipient: abuse@namesilo.com Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.