raowox[.]com
Перевірка домену raowox.com на фішинг і безпеку
“Raowox: Most Popular Online Crypto Casino Based on Blockchain”
raowox.com — Контент недоступний (HTTP 502). Уособлення бренду: Genericcrypto; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 7/94 (Gridinsoft); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 81/100. Реєстратор: GMO Internet.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy identifies raowox.com as a live crypto-drainer domain designed to steal cryptocurrency from unsuspecting users. The site mimics legitimate wallet login pages to trick victims into entering their private keys or connecting their wallets, enabling immediate fund drainage. Attackers behind this campaign leverage social engineering tactics, such as phishing emails or fake advertisements, to lure targets to the malicious domain. Once a user lands on the page, the crypto-drainer silently exfiltrates wallet credentials or directly drains funds without requiring additional authentication. This domain was flagged by PhishDestroy with an elevated risk rating after analysis revealed critical indicators. VirusTotal data shows raowox.com is recognized by only 1 out of 95 security vendors, highlighting its stealthy nature and the challenge of detection. The domain was registered on March 17, 2026, through GMO Internet, Inc., a registrar often abused by threat actors for quick domain turnover. It resolves to IP address 188.114.96.3 and utilizes a Let's Encrypt SSL certificate to appear legitimate. These factors suggest an opportunistic campaign targeting users in a narrow timeframe before the domain is likely abandoned or taken down. If you visited raowox.com or entered any information, immediately revoke wallet connections via your wallet's security settings and transfer remaining funds to a new wallet. Scan your device with updated antivirus software and reset passwords used on the site. Report the domain to PhishDestroy for investigation and consider enabling multi-factor authentication on all crypto-related accounts. Stay vigilant for follow-up phishing attempts, as threat actors may reuse credentials or contact details obtained from this attack.
Сигнали безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Історія скарг на зловживання · 2 stored reports over 3 days · click to expand
-
Report #2 ICANN CC 90h still active Apr 26, 2026 · 17:26 UTCESCALATION #2 (90h active): Phishing - raowox[.]comabuse@internet.gmo abuse@verisign-grs.com compliance@icann.org
-
Report #3 ICANN CC 139h still active Apr 28, 2026 · 18:20 UTCESCALATION #3 (139h active): Phishing - raowox[.]comabuse@internet.gmo abuse@verisign-grs.com compliance@icann.org
Технології · 4 identified
Twitter Ads is an advertising platform for Twitter 'microblogging' system.
ads.twitter.com 100% впевненостіFacebook pixel is an analytics tool that allows you to measure the effectiveness of your advertising.
facebook.com 100% впевненостіCloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіАналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of raowox.com · checked Apr 22, 2026
Докази та зовнішні звіти
PD-20260422-48CEFC Recipient: abuse@internet.gmo Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога