cft[.]report
“CFT.Report — Комплексная проверка кошельков”
cft.report — 클로킹됨 · 접근 가능. 사기 유형: Crypto Drainer. 증거 요약: VirusTotal 2/91 (alphaMountain.ai, Gridinsoft); URLQuery 2 alerts; 1 external blocklist match (ScamSniffer); cloaking observed; PhishDestroy score 86/100. 등록기관: Hostinger.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
This domain is flagged as an elevated-risk crypto wallet drainer phishing site targeting Russian-speaking users. Analysis of the infrastructure indicates it was designed to mimic legitimate wallet verification services, likely to siphon cryptocurrency from victims under the guise of a "comprehensive wallet check." Infrastructure analysis reveals the domain cft.report was registered on March 14, 2026, through HOSTINGER operations, UAB, and resolved to the IP address 87.236.16.177. It is currently blocked by two security blocklists and flagged by 4 out of 95 security vendors on VirusTotal. The site employed PHP, Vue.js, Nginx, and third-party libraries such as Unpkg, jsDelivr, and FingerprintJS, which are commonly abused to facilitate client-side attacks. The SSL certificate was issued by Let's Encrypt, a low-friction provider often leveraged by malicious actors to lend superficial legitimacy. The page title, "CFT.Report — Комплексная проверка кошельков," directly translates to a service offering wallet verification, a known pretext for crypto drainer schemes. Mitigation against this threat type requires heightened vigilance when interacting with wallet verification prompts. Users should avoid connecting wallets to unverified platforms, particularly those advertised via unsolicited links or social engineering. Browser-based security extensions that block known malicious domains should be enabled, and wallet software should be configured to require explicit confirmation for high-risk transactions. Organizations should update blocklists to include this domain and its associated IP, while monitoring for similar infrastructure patterns, such as domains registered through the same registrar or resolving to the same hosting provider. Given the domain's current offline status, further monitoring is advised to detect potential re-emergence under a different name or IP.
네트워크 보안 인텔리전스
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | cft.report |
malicious | Sinkholed |
| DNS4EU | cft.report |
malicious | Sinkholed |
위협 대응 Pipeline
공개 차단 목록 상태
저장된 캡처
도메인 인텔리전스
기술적 세부 사항DNS, SSL SAN, 타임스탬프
ICANN OVERSIGHT
인증 및 RAA 상황
인증 및 RAA 상황
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
사용 기술 · 6 identified
Server-side scripting language designed for web development.
Progressive JavaScript framework for building user interfaces.
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Fast CDN for everything on npm — serves raw files from npm packages.
Free public CDN for open-source projects, serving files from npm and GitHub.
VirusTotal 분석
사이트 성능 분석
Google PageSpeed Insights — mobile performance audit of cft.report · checked Jun 26, 2026
증거 및 외부 보고서
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.