upictures[.]app
Análisis de phishing y seguridad de upictures.app
“upictures.app”
upictures.app — No verificado (HTTP 409). Tipo de estafa: Crypto Drainer. Resumen de las pruebas: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); URLQuery 2 alerts; PhishDestroy score 65/100. Registrador: Fewmoretaps OU d/b/a T….
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
PhishDestroy identifies upictures.app as an active cryptocurrency drainer under investigation, currently flagged with a risk level of under_investigation. This domain mimics legitimate image services to deceive users into connecting crypto wallets, enabling unauthorized fund transfers. The threat is classified as a generic phishing attack with direct financial implications for cryptocurrency holders.
This domain was flagged by PhishDestroy on seed 3562a4, with technical indicators including a VirusTotal detection rate of 0/95 engines, registration through Fewmoretaps OU (operating as Trustname.com), a March 01, 2026 creation date, and resolution to IP 216.24.57.1. Despite the absence of current blocklist entries or trust score penalties, the domain's recent registration and lack of online reputation pose significant risks. The absence of detections on VirusTotal suggests either a newly deployed attack or evasion tactics by the threat actor.
To mitigate exposure to upictures.app, users should immediately avoid interacting with the domain, including refraining from wallet connections or file uploads. Cryptocurrency holders are advised to verify URLs via PhishDestroy’s real-time scanner before any transactional activity. Block the IP 216.24.57.1 at the network level and report any suspicious connections to PhishDestroy for further analysis. Always cross-check domain registrations against ICANN records and monitor wallet activity for unauthorized transactions.
Inteligencia de seguridad de red Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | upictures.app |
malicious | Sinkholed |
| Hagezi Threat Feed | upictures.app |
malicious | Sinkholed |
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
ICANN OVERSIGHT
Acreditación y contexto RAA
Acreditación y contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análisis de VirusTotal
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.