Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 7 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
everenx[.]com
“EverenX - Offizielle Plattform | KI-Trading 2025 | Über 10.000 Bewertungen”
Збережене спостереження
Зафіксована відмінність заголовків
Зведення доказів
everenx.com was registered on 2026-02-21 through PDR Ltd. d/b/a PublicDomainRegistry.com and resolves to the Cloudflare edge address 104.21.55.254 (AS13335, United States). The domain serves a page titled “EverenX - Offizielle Plattform | KI‑Trading 2025 | Über 10.000 Bewertungen”, suggesting a fraudulent cryptocurrency‑trading narrative. The SSL certificate is issued by Google Trust Services under the WE1 profile, confirming that TLS termination is provided by Cloudflare. HTTP requests return a 403 status, and as of the report date the site is taken offline.
The infrastructure is protected by Cloudflare’s DNS service, using the authoritative nameservers norah.ns.cloudflare.com and patrick.ns.cloudflare.com. Threat intelligence classifies the activity as social‑media phishing that impersonates Binance, and the domain appears on a single security blocklist. VirusTotal analysis shows that 1 of 93 scanning engines flagged the domain, while Gridinsoft assigns a trust score of 0 / 100, indicating a high confidence of malicious intent. PhishDestroy has already blocked the domain.
No additional payloads or malicious scripts have been observed because the site does not serve content at the time of analysis. Defenders should continue to block the domain at network and DNS layers, add it to internal phishing blocklists, and monitor for any related C2 infrastructure or newly registered look‑alike domains. Users should be warned that any unsolicited communication referencing Binance that directs to everenx.com is likely fraudulent, and they should be instructed to verify URLs against official Binance domains before entering credentials.
Знімок надісланих доказів
- Надіслано
- Записи журналу
- 1
- ID справи
PD-20260107-26B991- Заголовок збереженої сторінки
- EverenX - Offizielle Plattform | KI-Trading 2025 | Über 10.000 Bewertungen
- PDF-файл
- PDF із доказами
Повний текст доказів
Acceptable Use Policy (AUP): The domain everenx.com is engaged in phishing activities, which constitutes a clear violation of your AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The use of this domain for fraudulent purposes directly contravenes your TOS, which reserves the right to suspend or terminate services for such violations.
Applicable Laws (PL):
Act of 18 July 2002 on the Provision of Services by Electronic Means (Dz.U. 2002 nr 144 poz. 1204): This law prohibits the provision of services that facilitate illegal activities, including phishing.
Criminal Code of Poland (Ustawa z dnia 6 czerwca 1997 r. - Kodeks karny, Dz.U. 1997 nr 88 poz. 553): Articles 286 and 287 address fraud and computer-related crimes, making phishing a prosecutable offense.
Regulatory Note: Failure to take immediate action against this domain may expose your organization to legal liability and regulatory scrutiny under both national and international laws. Prompt compliance is essential to mitigate potential risks.
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
Хронологія виявлення
-
Статус домену
Доступний → Недоступний
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
-
Статус домену
Недоступний → Доступний
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології
Виявлено 1 технологію з високою впевненістю
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога