cryptoprice[.]pw
cryptoprice.pw のフィッシング・安全性チェック
“Crypto Price Miner - Earn USDT Daily by Monitoring Crypto Prices”
cryptoprice.pw — コンテンツが利用できません (HTTP 502). ブランドの偽装: Google; 詐欺タイプ: Brand Impersonation. 証拠の概要: VirusTotal 2/93 (Gridinsoft, SOCRadar); PhishDestroy score 61/100. レジストラ: Beget.
元のフォレンジック記録を保持するため、下の PhishDestroy AI 詳細分析は英語のままです。
Evidence Analysis
The domain cryptoprice.pw was registered on 21 February 2026 through Beget LLC and is hosted on the Russian address space of AS197695, a network operated by REG.RU. DNS resolution points to the IPv4 address 31.31.198.206, which is geolocated to Russia. The site currently reports an offline status, indicating that the HTTP service is not reachable at the time of analysis, but historical evidence shows it once served a page titled "Crypto Price Miner - Earn USDT Daily by Monitoring Crypto Prices" and claimed to impersonate Google. No TLS certificate was observed, meaning the site was only reachable via plain HTTP, a common trait of low‑cost phishing or crypto‑draining pages.
Reputation services assign a Gridinsoft trust score of 0 out of 100 and a Scamadviser score of 16 out of 100, reflecting a high likelihood of malicious intent. The domain appears on a single security blocklist and has been explicitly blocked by the PhishDestroy feed, confirming that at least one anti‑phishing consortium has taken action against it. VirusTotal analysis shows that 2 of 93 scanned security vendors flagged the domain, providing additional corroboration of suspicious activity. The registrar’s nameservers (ns1.hosting.reg.ru, ns2.hosting.reg.ru) further tie the infrastructure to a Russian hosting provider, a pattern observed in other brand‑impersonation campaigns.
While the exact payload or credential‑harvesting mechanism cannot be confirmed without a live page, the combination of brand impersonation, low trust scores, blocklist presence, and partial vendor detections warrants an elevated risk rating. Defenders should add cryptoprice.pw and its resolving IP 31.31.198.206 to outbound and inbound blocklists, monitor DNS queries for re‑registration, and enforce strict URL filtering for any references to this domain. Continuous re‑scanning is advised in case the site becomes active again, as the lack of SSL and the offline status do not preclude future malicious use.
データの網羅性13 recorded checks
セキュリティシグナル
脅威対応 Pipeline
公開ブロックリスト登録状況
VirusTotalによる分析
証拠および外部報告書Independent lookups and source reports
PD-20260124-4C473F Recipient: abuse@beget.com Victim safety and official reportingImmediate actions and verified reporting channels
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。