gorenex[.]com
gorenex.com 网络钓鱼与安全检查
“Gorenex: Most Popular Online Crypto Casino Based on Blockchain”
gorenex.com — 内容不可用 (HTTP 502). 品牌冒充:Genericcrypto; 诈骗类型:Crypto Scam. 证据摘要: VT 17/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLQuery 100 det.; URLScan malicious; GSB no flag; BL 0; PD 100/100. 注册商: MAT BAO.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy first observed gorenex.com on Jan 23, 2026. Stored content metadata identifies Genericcrypto as the apparent target. The captured page title is “Gorenex: Most Popular Online Crypto Casino Based on Blockchain”. Stored page analysis classifies the content as crypto scam. Campaign clustering links the hostname to the Gambler Scam kit. Current evidence score: 100/100 (critical).
Positive findings are stored from 3 sources: VirusTotal, URLQuery, and URLScan. VirusTotal recorded 17 detections among 93 engines: ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar, ESET, Forcepoint ThreatSeeker, Fortinet, G-Data, Gridinsoft, Kaspersky, Lionic, Seclookup, SOCRadar, Sophos, VIPRE on Feb 25, 2026 at 00:13 UTC. URLQuery recorded 100 detections; no observation timestamp was retained. URLScan returned a malicious verdict with score 100; scan metadata assigned phishing as its category on Jul 29, 2026 at 03:27 UTC. Non-positive and contextual checks: Gridinsoft assigned a trust score of 1/100 (Suspicious); no observation timestamp was retained. AlienVault OTX listed 1 community pulse reference (not vendor detections) on Mar 1, 2026 at 11:24 UTC. The external blocklist snapshot contained no matches on Aug 7, 2026 at 22:20 UTC. Google Safe Browsing returned no flag on Mar 3, 2026 at 04:14 UTC. PhishStats returned no feed match on Mar 2, 2026 at 11:12 UTC.
HTTP 502 was recorded on Aug 7, 2026 at 01:16 UTC; content was unavailable. Registration records for the domain list MAT BAO CORPORATION as the registrar. At collection time, the hostname resolved to 2606:4700:3034::6815:4528 on AS13335 (Cloudflare, Inc.). The IP and ASN identify shared Cloudflare edge infrastructure; the origin server is not established by this address. DOM analysis on Jul 29, 2026 at 04:12 UTC returned 0/100; the source detections above were recorded separately. The evidence archive retains 2 visual captures from PhishDestroy and URLScan. TLS metadata lists WE1 as the certificate issuer with validity through Mar 20, 2026; checked Mar 15, 2026 at 06:00 UTC.
The content indicators and 3 positive source findings support the current Genericcrypto-themed crypto scam classification.
安全信号
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
ICANN 收到了钱。问责却没有到来。
对于这个 gTLD,上述注册商依据与 ICANN 签订的合同运营。ICANN 收取与注册、续费和转移相关的年度费用、浮动费用及按交易计收的费用。
认证:已变现。问责:请稍后再来查看。
接着,魔法开始了:ICANN 写下 RAA §3.18,注册商调查自身客户群体内部的滥用行为,受害者免费提交证据,而每一层都在等待其他人采取行动。如果这能让受害者觉得更安全,那真是太好了——看来账单确实起作用了。
滥用举报历史 · 3 stored reports over 24 days · click to expand
-
Report #1 Escalation 380h still active Feb 8, 2026 · 18:25 UTCESCALATION #2 (380h active): Phishing - gorenex[.]comabuse@matbao.com
-
Report #2 Escalation Mar 3, 2026 · 01:33 UTCPhishing Abuse Report: gorenex[.]comabuse@matbao.com
-
Report #3 ICANN CC 37h still active Mar 4, 2026 · 15:08 UTCESCALATION #2 (37h active): Phishing - gorenex[.]comabuse@matbao.com abuse@verisign-grs.com compliance@icann.org
VirusTotal 分析
存档证据
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。