app[.]rousox[.]com
app.rousox.com 网络钓鱼与安全检查
app.rousox.com — 未验证. 证据摘要: VT 12/91 (alphaMountain.ai, BitDefender, CRDF, CyRadar, Fortinet); URLScan capture; GSB no flag; Spamhaus DBL_PHISH; BL 0; PD 91/100. 注册商: Fewmoretaps OU d/b/a T….
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy first observed app.rousox.com on Aug 7, 2026. Positive findings were recorded by VirusTotal and Spamhaus DBL. Evidence score: 91/100.
VirusTotal recorded 12 detections among 91 engines: alphaMountain.ai, BitDefender, CRDF, CyRadar, Fortinet, G-Data, Gridinsoft, Kaspersky on Aug 7, 2026 at 11:34 UTC. Spamhaus DBL: DBL_PHISH on Aug 7, 2026 at 14:30 UTC. The external blocklist snapshot contained no matches on Aug 7, 2026 at 14:20 UTC. Google Safe Browsing returned no flag on Aug 7, 2026 at 11:34 UTC. URLScan captured the page on Aug 7, 2026 at 11:36 UTC.
No conclusive timestamped HTTP response is stored. Registration records list Fewmoretaps OU d/b/a Trustname.com as the registrar and Jul 15, 2026 as the registration date. At collection time, the domain resolved to 64.7.198.11. DOM analysis completed on Aug 7, 2026 at 14:20 UTC; stored DOM score 0/100.
Stored full analysis2026年8月7日
app.rousox.com was observed resolving to the IPv4 address 64.7.198.11. The domain is currently classified as an active generic phishing site with an elevated risk rating. Threat intelligence from PhishDestroy indicates that the domain has been added to its blocklist, and at least one external blocklist also lists the domain. VirusTotal analysis shows that 12 of 91 scanning engines returned a malicious verdict, confirming the presence of phishing‑related payloads.
No additional public evidence such as Safe Browsing, OTX, registrar information, SSL certificate details, HTTP response codes, or trust‑score metrics were available at the time of analysis, and the page title has not been harvested. The limited data set suggests that the infrastructure is modest, relying on a single host address. Defenders should continue to block traffic to 64.7.198.11 and add app.rousox.com to local deny lists.
Network monitoring should flag any DNS queries or HTTP requests to the domain, and email gateways should inspect URLs for this host. Because the domain is actively flagged by multiple vendors, automated detection rules that incorporate the VirusTotal detection count and blocklist status are recommended. Ongoing observation is advised to capture any changes in hosting, SSL deployment, or content that could indicate escalation.
网络安全情报 Registrar Integrity Alert
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
Registration: rousox.com
认证和 RAA 背景
认证和 RAA 背景
ICANN 收到了钱。问责却没有到来。
For the registrable domain rousox.com behind this subdomain, the registrar above operates under an ICANN contract. ICANN collects annual, variable and transaction-based fees tied to registrations, renewals and transfers.
认证:已变现。问责:请稍后再来查看。
接着,魔法开始了:ICANN 写下 RAA §3.18,注册商调查自身客户群体内部的滥用行为,受害者免费提交证据,而每一层都在等待其他人采取行动。如果这能让受害者觉得更安全,那真是太好了——看来账单确实起作用了。
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of app.rousox.com · checked Aug 7, 2026
证据与外部报告
“I came across them on Instagram. They shared a promotion picture impersonating Mr Beast. The picture had a link to a website rousox.com and promo code SLOT2026. The picture stated that Mr Beast was giving out $2,500 to promote his new crypto betting website.”
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。