MALICIOUS — HIGH
app[.]fuel-network[.]live
The domain app.fuel-network.live was registered on February 21, 2026 through Web Commerce Communications Limited and is served by the name servers ns100.webnic.cc and ns101.webnic.cc.
- VirusTotal
- 5/93
- Blocklists
- No stored match
- التوفر
- المحتوى غير متوفر · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
app.fuel-network.live — المحتوى غير متوفر (HTTP 502). انتحال العلامة التجارية: Arbitrum; نوع الاحتيال: Crypto Scam. ملخص الأدلة: VirusTotal 5/93 (ChainPatrol, CyRadar, Fortinet, Gridinsoft, Seclookup); PhishDestroy score 65/100. مسجّل النطاق: Web Commerce Communica….
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
The domain app.fuel-network.live was registered on February 21, 2026 through Web Commerce Communications Limited and is served by the name servers ns100.webnic.cc and ns101.webnic.cc. Infrastructure analysis shows the domain resolves to IP address 45.9.148.51, which is advertised as belonging to AS49447 Nice IT Services Group Inc. and is geolocated in the Netherlands. The site presented a page titled "Claim Your Share of the Arbitrum Ecosystem | Up to $25,000 for Active Wallets", directly targeting the Arbitrum brand and promoting a cryptocurrency‑related incentive. The SSL certificate associated with the host is identified as type R11, indicating a standard TLS layer without additional trust signals.
Operational status is currently offline, and the domain has been taken down from public access. Defensive intelligence indicates the domain was blocked by PhishDestroy and appears on a single security blocklist. VirusTotal scans recorded five detections out of ninety‑three vendor engines, reinforcing the malicious classification. The campaign is characterized as a crypto scam employing brand impersonation of Arbitrum to lure users into claiming alleged rewards.
While the page content has not been captured, the combination of registrar data, hosting attribution, SSL profile, and detection counts provides sufficient confidence to label the domain as malicious. Defenders should continue to block the domain at network perimeters, update local blocklists with the observed IP and name server entries, and monitor for any re‑registration attempts that reuse the same infrastructure. Further investigation of any residual traffic may reveal additional campaign artifacts, but the current evidence set is adequate for immediate mitigation.
نطاق تغطية البيانات12 recorded checks
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
Registration: fuel-network.live
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain fuel-network.live behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.