MALICIOUS — CRITICAL
fortbys.top — Base Blockchain Brand Impersonation Report
fortbys[.]
This domain, fortbys.top, poses a high-risk brand impersonation threat targeting users of the Base blockchain platform.
- VirusTotal
- 2/91
- Blocklists
- 2 · MetaMask, SEAL
- التوفر
- المحتوى غير متوفر · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
fortbys.top — المحتوى غير متوفر (HTTP 502). انتحال العلامة التجارية: Genericcrypto; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 2/91 (alphaMountain.ai, Forcepoint ThreatSeeker); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 71/100. مسجّل النطاق: PDR.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
This domain, fortbys.top, poses a high-risk brand impersonation threat targeting users of the Base blockchain platform. Analysis indicates the site mimics legitimate Base services by presenting itself as an online crypto casino, using the page title 'Fortbys: Most Popular Online Crypto Casino Based on Blockchain.' The intent appears to be fraudulent, likely aiming to deceive users into depositing cryptocurrency under false pretenses, such as fake gambling platforms or wallet-draining schemes. Given the domain's focus on blockchain and crypto assets, financial loss through unauthorized transactions or credential theft is a primary concern for visitors.
Technical indicators confirm the malicious nature of this domain. VirusTotal reports 2 out of 95 security vendors flagging fortbys.top as malicious, while it appears on 1 security blocklist. The domain was registered on April 02, 2026, through PDR Ltd. d/b/a PublicDomainRegistry.com, a registrar frequently associated with high-risk domains. Infrastructure analysis reveals the domain resolves to IP address 188.114.96.3, hosted on AS13335 (Cloudflare, Inc.), a network commonly used to obfuscate malicious infrastructure. The SSL certificate is issued by Let's Encrypt (serial number E7), which, while legitimate, is often exploited by threat actors to lend false credibility to phishing sites.
Users who have visited fortbys.top should take immediate action to mitigate potential risks. If any cryptocurrency transactions were initiated or wallet credentials were entered, assume compromise and transfer remaining assets to a new, secure wallet. Monitor all linked accounts for unauthorized activity, including connected decentralized applications (dApps) or exchange platforms. Reset passwords and enable multi-factor authentication (MFA) on all crypto-related accounts. Additionally, scan the device used to access the domain for malware, as brand impersonation sites often deploy malicious payloads. Report the domain to relevant blockchain security platforms and consider notifying the legitimate Base team to aid in broader threat mitigation efforts.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
نطاق تغطية البيانات12 recorded checks
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات · 3 identified
Facebook pixel is an analytics tool that allows you to measure the effectiveness of your advertising.
facebook.com ثقة 100٪Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com ثقة 100٪تحليل VirusTotal
الأدلة والتقارير الخارجيةIndependent lookups and source reports
PD-20260617-CA2F36 Recipient: abuse-contact@publicdomainregistry.com Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.