MALICIOUS — HIGH
Verifica phishing e sicurezza per caststreams.live
caststreams[.]
This domain, caststreams.live, is identified as a cryptocurrency phishing threat designed to deceive users into disclosing sensitive credentials or transferring digital assets.
- VirusTotal
- 3/91
- Blocklists
- 2 · MetaMask, SEAL
- Disponibilità
- Contenuto non disponibile · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
caststreams.live — Contenuto non disponibile (HTTP 502). Tipo di truffa: Crypto Scam. Riepilogo delle prove: VirusTotal 3/91 (alphaMountain.ai, Gridinsoft, SOCRadar); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 68/100. Registrar: PDR.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Evidence Analysis
This domain, caststreams.live, is identified as a cryptocurrency phishing threat designed to deceive users into disclosing sensitive credentials or transferring digital assets. The site masquerades as a legitimate streaming or financial platform, using the page title 'Pump' to potentially lure victims with promises of investment opportunities or token-related schemes. Such phishing domains often employ social engineering tactics, including fake login portals or fraudulent wallet interfaces, to harvest private keys, seed phrases, or personal information. Given the domain's association with cryptocurrency-related blocklists, users should assume any interaction with this site could result in financial loss or unauthorized access to digital wallets. Analysis indicates caststreams.live was registered on April 30, 2026, through PDR Ltd. d/b/a PublicDomainRegistry.com, a registrar frequently exploited for malicious domains. The domain is flagged by 3 out of 95 security vendors on VirusTotal, a relatively low detection rate that may reflect its recent deployment or evasion techniques. Infrastructure analysis reveals the domain resolves to IP address 172.67.138.253, a Cloudflare-protected endpoint, which is commonly used to obscure hosting origins and complicate takedown efforts. Additionally, the site appears on 3 security blocklists, including cryptocurrency-specific threat feeds, further confirming its malicious intent. The use of Node.js, Vue.js, and Nuxt.js suggests a modern, interactive frontend designed to mimic legitimate platforms. If a user has visited caststreams.live, immediate action is required to mitigate potential compromise. First, disconnect any devices used to access the site from the internet to prevent ongoing data exfiltration. Next, revoke access to any cryptocurrency wallets or accounts that may have been linked or entered on the site, and transfer remaining assets to a new, secure wallet. Monitor all connected accounts for unauthorized transactions or login attempts, and enable multi-factor authentication where available. Users should also clear browser caches and cookies to remove any residual session data. Given the domain's offline status, further interaction is unlikely, but vigilance is advised for similar phishing attempts targeting cryptocurrency users.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Copertura dei dati12 recorded checks
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologie · 6 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org Confidenza al 100%Vue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.
vuejs.org Confidenza al 100%Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com Confidenza al 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Confidenza al 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confidenza al 100%Analisi di VirusTotal
Dati e relazioni esterneIndependent lookups and source reports
PD-20260430-514510 Recipient: abuse@publicdomainregistry.com Victim safety and official reportingImmediate actions and verified reporting channels
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.