firss[.]top
“LocalVendors - Nigeria’s trusted marketplace to buy and sell products, connect with verified vendor…”
ملخص الأدلة
Analysis of the domain firss.top confirms its classification as a crypto scam marketplace, operational since February 21, 2026, and designed to impersonate trusted vendor platforms. The domain was registered through Global Domain Group LLC and currently resolves to IP address 163.61.188.5, hosted on AS153568 (NEW DHAKA HARDWARE) in the United States. Infrastructure analysis reveals the use of nameservers dns1.lytehosting.com, dns2.lytehosting.com, and dns3.lytehosting.com, alongside an SSL certificate issued by Let's Encrypt (R13), indicating a basic but functional setup to support secure connections. The page title, 'LocalVendors - Nigeria’s trusted marketplace to buy and sell products, connect with verified vendors, and post ads with ease. Powered by an escrow system for safe transactions,' suggests an attempt to mimic legitimate classified or e-commerce platforms, likely targeting users in Nigeria or West Africa.
The presence of an escrow system claim aligns with common tactics used in crypto scams to build false trust. Technologies detected on the domain include PHP, Tailwind CSS, Bootstrap, LiteSpeed, Unpkg, jsDelivr, and AOS, which are consistent with modern web development practices but offer no inherent indication of malicious intent on their own. As of July 25, 2026, the domain is flagged by one security vendor on VirusTotal and appears on a single security blocklist, as reported by PhishDestroy. While the detection rate remains low, the domain has been taken offline, reducing immediate exposure. MX records point to firss.top itself, which may indicate email functionality for phishing or transactional scam communications.
The Gridinsoft trust score of 0/100 further corroborates the domain's malicious classification. Defenders should treat firss.top as a confirmed crypto scam domain, particularly targeting users through marketplace impersonation. Network-level blocking of the IP 163.61.188.
Data Coverage
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
المخطط الزمني للاكتشاف
-
Cloudflare Radar
تم حفظ فحص Cloudflare Radar · فتح الفحص
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات
حُدّدت ٨ تقنيات عالية الثقة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of firss.top · checked Mar 7, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب