flexcheck[.]top
flexcheck.top 피싱 및 보안 점검
“Fortnite Wealth Leaderboard | Epic Games”
flexcheck.top — 콘텐츠를 사용할 수 없음 (HTTP 502). 브랜드 사칭: Epicgames; 사기 유형: Credential Phishing. 증거 요약: VirusTotal 2/92 (alphaMountain.ai, Gridinsoft); URLScan malicious verdict; PhishDestroy score 56/100. 등록기관: PDR.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
PhishDestroy identifies Flexcheck.top as a live credential harvesting domain posing as a financial verification portal. This domain was flagged by security researchers as an active phishing infrastructure designed to mimic legitimate financial service interfaces and trick users into submitting sensitive login credentials. The threat actor behind this campaign impersonates banking and payment verification pages to harvest usernames, passwords, and potentially two-factor authentication codes. Once credentials are captured, they are exfiltrated to attacker-controlled servers for identity theft, unauthorized fund transfers, or sale on dark web marketplaces. Given the lack of detection by VirusTotal (2/95 engines as of query time), this domain represents a stealthy and evolving threat capable of bypassing initial screening measures. This domain exhibits multiple red flags consistent with phishing operations. VirusTotal currently reports 2 out of 95 antivirus engines detecting malicious content, indicating that signature-based detection has not yet caught up with this threat. Registered through PDR Ltd on May 06, 2026, the domain resolves to IP address 104.21.68.242 and uses a valid Let's Encrypt SSL certificate, which may give users a false sense of security by displaying the padlock icon in browsers. The recent creation date suggests a hastily deployed campaign, likely targeting users during tax season or financial reporting periods. The use of a legitimate SSL provider further demonstrates the sophistication of this attack vector. Users who have visited Flexcheck.top or entered any information on the site should immediately reset passwords for all related accounts, especially financial services, email accounts, and cloud storage platforms where password reuse might grant attackers broader access. Enable multi-factor authentication wherever possible, monitor financial statements for unauthorized transactions, and report any suspicious activity to the appropriate financial institution. If you believe credentials were compromised, consider freezing your credit report and filing a report with local cybercrime units or the FTC. Avoid reusing passwords across different services and use a password manager with breach monitoring to proactively detect compromised credentials. Always verify URLs manually and navigate directly to official websites rather than relying on links received via email or messages.
위협 대응 Pipeline
공개 차단 목록 상태
저장된 캡처
도메인 인텔리전스
기술적 세부 사항DNS, SSL SAN, 타임스탬프
ICANN OVERSIGHT
인증 및 RAA 상황
인증 및 RAA 상황
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
사용 기술 · 4 identified
Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 신뢰도 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 신뢰도 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 신뢰도 100%VirusTotal 분석
증거 및 외부 보고서
PD-20260507-D77858 Recipient: abuse-contact@publicdomainregistry.com 이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.