MALICIOUS — HIGH
usdtcheckup[.]com
The domain usdtcheckup.com was registered on February 21, 2026 and is currently listed as offline.
- VirusTotal
- 2/93
- Blocklists
- 1 · ScamSniffer
- Ketersediaan
- Konten tidak tersedia · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
usdtcheckup.com — Konten tidak tersedia (HTTP 502). Peniruan identitas merek: Csgo; Jenis penipuan: Crypto Scam. Ringkasan bukti: VirusTotal 2/93 (G-Data, Seclookup); URLScan malicious verdict; 1 external blocklist match (ScamSniffer); PhishDestroy score 58/100.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Evidence Analysis
The domain usdtcheckup.com was registered on February 21, 2026 and is currently listed as offline. Infrastructure analysis shows the domain resolves to the IPv4 address 194.87.74.167, which is announced by ASN AS48347 belonging to JSC Mediasoft ekspert and geolocated to Russia. The site presents a page titled "AML Check" and is described in the intelligence as a crypto‑scam that impersonates the brand csgo. TLS inspection indicates the presence of an SSL certificate labeled R10, confirming that the site employed HTTPS during its active period.
The domain appears on two external blocklists, specifically PhishDestroy and ScamSniffer, reflecting its identification by independent anti‑phishing services. VirusTotal scans recorded detections from two of the ninety‑three submitted security vendors, providing additional corroboration of malicious activity. No further public reputation scores or Safe Browsing verdicts are available in the supplied data.
Defenders should prioritize blocking network traffic to the IP 194.87.74.167 and add usdtcheckup.com to domain deny lists across perimeter and endpoint security solutions. Monitoring for any re‑registration of the domain or the emergence of similar hostnames that resolve to the same ASN is advised, as threat actors may attempt to revive the campaign using the same infrastructure. Continuous correlation with threat intelligence feeds for the csgo brand will help surface related attempts at brand impersonation.
Cakupan data12 recorded checks
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Analisis VirusTotal
Bukti & Laporan EksternalIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.