checkfort[.]top
“Fortnite Inventory Checker | Epic Games”
Ringkasan bukti
PhishDestroy identifies checkfort.top as a high-risk crypto drainer domain impersonating Epic Games' Fortnite platform to harvest user credentials and crypto assets. This domain leverages deceptive branding to trick victims into entering sensitive login information, which is then exfiltrated to malicious actors. The page title ('Fortnite Inventory Checker | Epic Games') mirrors Epic Games' official branding, creating a false sense of legitimacy to exploit user trust.
This domain was flagged by 21 out of 95 security vendors on VirusTotal, indicating a high consensus on its malicious nature. Registered through PDR Ltd. d/b/a PublicDomainRegistry.com on February 10, 2026, the domain resolves to IP address 188.114.97.3 and has been blocked by OpenPhish and PhishingArmy. Despite hosting an SSL certificate from Google Trust Services, the domain’s malicious intent is further evidenced by its inclusion on 2 active security blocklists. These technical indicators collectively confirm the domain’s active involvement in credential harvesting and crypto drainer operations.
To mitigate risks associated with checkfort.top, users should immediately avoid accessing the domain or any linked pages. Verify the authenticity of Fortnite-related tools or services by cross-referencing official Epic Games channels or trusted cybersecurity platforms like PhishDestroy. Enable multi-factor authentication (MFA) on all gaming and financial accounts, and use unique, strong passwords to limit exposure in case of credential theft. Report any suspicious activity to Epic Games' support team and update security software to detect and block known malicious domains. Proactive monitoring of account activity for unauthorized transactions or login attempts is also critical to prevent further exploitation.
Snapshot bukti yang dikirim
- Dikirim
- Catatan buku besar
- 1
- ID kasus
PD-20260516-357F4C- Artefak PDF
- Bukti PDF
Teks bukti lengkap
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (US):
18 U.S.C. § 1343 - Wire Fraud
18 U.S.C. § 1030 - Computer Fraud and Abuse Act (CFAA)
15 U.S.C. § 45 - FTC Act (Deceptive Practices)
Federal laws prohibit wire fraud, computer fraud, and deceptive business practices.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | checkfort.top |
malicious | Sinkholed |
| OpenDNS | checkfort.top |
phishing | Phishing Block |
| Hagezi Threat Feed | checkfort.top |
malicious | Sinkholed |
| DigiCert UltraDNS | checkfort.top |
malicious | Sinkholed |
| DNS4EU | checkfort.top |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Cakupan daftar blokir
10 sumber eksternal dipantau · snapshot tersimpan 12/08/2026
Tangkapan tersimpan
Intelijen Domain
Detail teknisDNS, nama TLS, dan stempel waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknologi
4 teknologi dengan keyakinan tinggi teridentifikasi
Analisis VirusTotal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive