Analysis of fartcoinswap.pro, created on July 02, 2026, indicates active malicious infrastructure consistent with a generic phishing operation. The domain is delegated to the anycast DNS pair ns1.anycastdns.cz and ns2.anycastdns.cz, and resolves to the IPv4 address 186.2.175.35. Registration records show the domain was obtained through Fewmoretaps OU operating under the trade name Trustname.com.
The domain currently appears on a single security blocklist and has been explicitly blocked by the PhishDestroy service, reinforcing the assessment of its malicious intent. VirusTotal reports that the domain has been scanned by 91 independent vendors; none of these scanners have raised a detection at the time of analysis, but the absence of detections does not constitute a safety assurance. No public information is available regarding SSL certificate details, HTTP response codes, page title, or branding displayed on the site, indicating that those elements have not yet been collected or published.
Given the recent creation date, the use of reputable DNS services, and the presence on a known phishing blocklist, defenders should treat the domain as hostile. Recommended mitigations include adding fartcoinswap.pro and its resolving IP 186.2.175.35 to network deny lists, monitoring DNS queries for the associated nameservers, and continuing to track any future detections from additional scanning platforms. Ongoing observation is advised to detect any evolution of the campaign or emergence of new indicators of compromise.