niyuve[.]cuqico[.]com
“Web App”
niyuve.cuqico.com — 확인되지 않음. 사기 유형: Generic Phishing. 증거 요약: VirusTotal 1/94 (SOCRadar); PhishDestroy score 55/100. 등록기관: CNOBIN INFORMATION TEC….
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
PhishDestroy identifies niyuve.cuqico.com as an active crypto drainer phishing domain impersonating a generic 'Web App' interface. The domain remains operational as of the latest scan and continues to pose a direct threat to unsuspecting users who may interact with it under false pretenses. While the specific cryptocurrency platform or service being impersonated has not been confirmed, the presence of a crypto drainer payload cannot be ruled out given the domain’s configuration and observed behavior patterns. Users are advised to treat this domain as hostile until further forensic analysis is completed. This domain was flagged by 1 of 95 VirusTotal vendors, indicating a lack of widespread detection despite its active status. It was registered through CNOBIN INFORMATION TECHNOLOGY LIMITED, resolves to IP address 2.26.50.28, and was created on April 11, 2026. The domain operates with a valid Let's Encrypt SSL certificate, which may contribute to user trust. Notably, there are currently no public blocklist entries associated with this domain, and its trust scores remain unassessed across major threat intelligence platforms. The absence of detections suggests this campaign may be newly deployed or leveraging evasion tactics to bypass initial screening mechanisms. The current status of niyuve.cuqico.com remains active, with no signs of takedown or mitigation as of this report. Given the high-risk nature of crypto drainer phishing campaigns, which often result in irreversible financial loss, immediate defensive action is recommended. Users should avoid accessing this domain entirely and report any encounters. Organizations are urged to implement network-level blocking for the domain and associated IP (2.26.50.28) to prevent accidental exposure. Additionally, users who may have already interacted with this domain should revoke any connected wallet permissions, transfer remaining assets to a secure wallet, and perform a full security audit. Continuous monitoring for similar domains is advised, as threat actors frequently rotate infrastructure to sustain campaign longevity. PhishDestroy will provide updates as new intelligence emerges.
위협 대응 Pipeline
공개 차단 목록 상태
저장된 캡처
도메인 인텔리전스
기술적 세부 사항DNS, SSL SAN, 타임스탬프
ICANN OVERSIGHT
Registration: cuqico.com
인증 및 RAA 상황
인증 및 RAA 상황
Registrar accreditation and DNS abuse obligations
For the registrable domain cuqico.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
사용 기술 · 2 identified
Progressive JavaScript framework for building user interfaces.
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
VirusTotal 분석
보관된 증거
증거 및 외부 보고서
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.