ffstcup[.]com
“FASTCUP — Пусть к Серьезным победам в CS2!”
This domain, ffstcup.com, is identified as a fake login portal designed to harvest user credentials through deceptive authentication interfaces. Analysis indicates the infrastructure mimics legitimate login pages, likely targeting financial services, email providers, or corporate access points to capture sensitive account details. The domain employs social engineering tactics to trick users into submitting usernames, passwords, and potentially multi-factor authentication codes, which are then exfiltrated to attacker-controlled servers for unauthorized access or identity theft. Infrastructure analysis reveals multiple technical indicators supporting the malicious classification. The domain was registered on March 27, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar frequently associated with high-risk domains. It resolves to the IP address 188.114.97.3 and is flagged by 4 out of 95 security vendors on VirusTotal, including detections for phishing and fraudulent activity. The domain appears on one security blocklist and has been documented in a single AlienVault OTX threat intelligence pulse, further corroborating its malicious intent. Gridinsoft assigns a trust score of 0/100, reinforcing the elevated risk assessment. Users who visited ffstcup.com or entered credentials on any page hosted under this domain should immediately take corrective action. Reset passwords for all accounts accessed from the compromised session, prioritizing financial, email, and work-related platforms. Enable multi-factor authentication where available, using app-based or hardware tokens instead of SMS-based methods. Monitor accounts for unauthorized transactions, password change notifications, or suspicious login attempts. If corporate credentials were exposed, notify internal security teams to initiate incident response protocols. Consider scanning affected devices for malware, as phishing sites may deploy additional payloads to maintain persistence or exfiltrate further data.
سجل البلاغ المرسل
لقطة الأدلة المرسلة
- أُرسل
- سجلات الدفتر
- 1
- معرّف القضية
PD-20260327-45916B- عنوان الصفحة الملتقطة
- FASTCUP — Пусть к Серьезным победам в CS2!
- ملف PDF
- دليل PDF
الأساس القانوني
النص الكامل للدليل
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
استخبارات أمن الشبكات Registrar context
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
10 مصادر · تمت المزامنة في 09/08/2026
المخطط الزمني للاكتشاف
الملاحظات المحفوظة بترتيب زمني.
-
VirusTotal
VirusTotal: 4 ← 4
-
التوفر
التوفر: رُصد أول مرة بالحالة dns_inactive
f93a11f87e4d -
التوفر
التوفر: dns_inactive ← unknown
d723bc9dd351 -
التوفر
التوفر: unknown ← dns_inactive
e4cb9e9a81d3 -
التوفر
التوفر: dns_inactive ← inactive
22b83e420458 -
التوفر
التوفر: inactive ← dns_inactive
f52d526b76a1 -
التوفر
التوفر: dns_inactive ← unknown
8188c082756d -
التوفر
التوفر: unknown ← inactive
8b024005a841 -
التوفر
التوفر: inactive ← unknown
af42fcc53131 -
التوفر
التوفر: unknown ← dns_inactive
6dfe9145995c
عرض الكل (7)
-
التوفر
التوفر: dns_inactive ← inactive
c4d8b106df93 -
التوفر
التوفر: inactive ← dns_inactive
641ed81dc4d5 -
التوفر
التوفر: dns_inactive ← unknown
c7a4b08cfd52 -
التوفر
التوفر: unknown ← inactive
fc473a13611d -
التوفر
التوفر: inactive ← unknown
cea303ed950f -
التوفر
التوفر: unknown ← dns_inactive
d0b7046e8c2f -
التوفر
التوفر: dns_inactive ← inactive
2d023e35f0ec
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of ffstcup.com · checked Jun 26, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب