gwev12x[.]life
“GET-X”
gwev12x.life — Прикритий · доступний. Зведення доказів: VirusTotal 6/91 (alphaMountain.ai, Chong Lua Dao, ESET, Fortinet, Gridinsoft); URLQuery 2 alerts; Spamhaus DBL_SPAM; cloaking observed; PhishDestroy score 93/100. Реєстратор: URL Solutions.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain gwev12x.life was identified as a generic phishing site posing an elevated risk of credential theft or fraudulent activity. It did not impersonate a specific brand or deploy a known crypto drainer kit. As of the latest verification, gwev12x.life has been taken offline, though prior activity suggests it targeted users with deceptive login prompts or financial scams.
Technical analysis of gwev12x.life revealed limited but notable detection: 2 of 95 VirusTotal security vendors flagged the domain, including alphaMountain.ai and Fortinet. The domain was registered through URL Solutions, Inc. on February 21, 2026, and resolved to the IP address 186.2.165.80, hosted under AS59692 (IQWeb FZ-LLC). It appeared on one security blocklist, PhishDestroy, while Google Safe Browsing did not flag it. The SSL certificate was issued by Let's Encrypt (R12), and observed technologies included Node.js, Vue.js, Nuxt.js, Amazon Web Services, and DDoS-Guard. The page title displayed was 'GET-X', and nameservers were ns1.pananames.com through ns4.pananames.com.
Users who may have interacted with gwev12x.life should immediately change any credentials entered on the site, particularly for financial or email accounts. Enable two-factor authentication (2FA) on all sensitive services to mitigate further risk. Monitor accounts for unauthorized transactions or suspicious activity, and report the domain to platforms like Google Safe Browsing, PhishTank, or local cybersecurity authorities. If financial data was exposed, contact the relevant institution to secure accounts and dispute fraudulent charges.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | gwev12x.life |
malicious | Sinkholed |
| DNS4EU | gwev12x.life |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 7 identified
JavaScript runtime built on Chrome V8 engine for server-side development.
Progressive JavaScript framework for building user interfaces.
Hybrid Vue framework for server-side rendering and static sites.
Cloud computing platform offering compute, storage, and networking services.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Amazon Web Services CDN for low-latency content delivery.
Аналіз VirusTotal
Аналіз конфігурації сайту
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога