narewex[.]com
“Narewex: Most Popular Online Crypto Casino Based on Blockchain”
证据摘要
Analysis of the domain narewex.com, created on 02 Oct 2025 and registered via Atak Domain, shows a deliberate crypto‑focused phishing campaign. The site’s sole visible artifact is the page title “Narewex: Most Popular Online Crypto Casino Based on Blockchain”, which aligns with the classified scam type “Crypto Scam” and the identified Gambler Scam phishing kit. The domain resolves to the IP address 188.114.96.3, which is announced as belonging to AS13335 Cloudflare, Inc. and geolocated to the United States. The hosting uses Cloudflare’s nameservers hera.ns.cloudflare.com and oswald.ns.cloudflare.com, a typical pattern for fast‑flux or hide‑behind services. No TLS certificate is presented, indicating the site operates over plain HTTP, a common trait of low‑effort phishing pages.
Multiple security controls have already taken action. PhishDestroy has blocked the domain, and it appears on one external blocklist. VirusTotal reports that 16 out of 95 scanned scanners flagged the domain, demonstrating a moderate detection consensus among AV engines. AlienVault OTX cites the domain in a single threat‑intel pulse, confirming its presence in broader community feeds. Gridinsoft assigns a trust score of 1 / 100, reflecting extreme untrustworthiness.
The current HTTP status is “taken offline”, suggesting the site is no longer reachable, yet the indicators remain useful for remediation. Defenders should continue to enforce blocklisting of the domain and its associated IP address at perimeter and endpoint security layers. Because the domain uses Cloudflare infrastructure, additional monitoring of other sub‑domains that may resolve to the same IP range is advised. Updating URL filtering and reputation feeds with the observed indicators—page title, registrar, nameservers, and detection counts—will help prevent future replicas. Incident response teams should also flag any inbound traffic to 188.114.96.
Data Coverage
安全信号
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
检测时间线
-
Cloudflare Radar
已存储 Cloudflare Radar 扫描 · 打开扫描
社区报告
由 1 名社区成员报告;首次发现于 2025年11月1日
- 已存储报告
- 1
- 已报告的唯一 URL
- 1
社区情报
1 条社区报告
类别PHISHING
The PhishFort Detection System has flagged this as a domain threat, classified as phishing. Threat detected at 2025-12-30T12:39:24.753Z.
已保存的截图
域名情报
技术详情DNS、TLS 名称和时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控