mstr[.]ac
“Biggest CRYPTO giveaway of $100,000,000”
Resumo das evidências
This domain, mstr.ac, was registered on 21 February 2026 through Web Commerce Communications Limited and points to the Cloudflare edge address 172.67.218.78, which is associated with ASN 13335 in the United States. The authoritative name servers are harlan.ns.cloudflare.com and shaz.ns.cloudflare.com, indicating the use of Cloudflare’s DNS service. No TLS certificate was observed, and the site is currently taken offline, suggesting that the malicious content has been removed or the infrastructure has been disrupted. The page title that was retrieved before takedown reads “Biggest CRYPTO giveaway of $100,000,000”, which aligns with a high‑value cryptocurrency‑giveaway lure commonly used to attract victims.
VirusTotal recorded 13 positive detections out of 95 scanned engines, and the domain appears on three independent security blocklists. It has also been listed by the PhishDestroy, MetaMask, and SEAL filtering services, confirming that multiple anti‑phishing and wallet‑protection products consider the domain malicious. The lack of an SSL certificate further reduces trust signals and may trigger browser warnings. The evidence indicates a high‑risk profile despite the current offline state; the underlying infrastructure (Cloudflare IP range) is shared with many legitimate services, so simple IP‑based blocking could produce false positives.
Defenders should proactively add mstr.ac to domain‑based deny lists, monitor for re‑registration or similar‑looking subdomains, and apply URL‑filtering rules that flag any page with the exact title “Biggest CRYPTO giveaway of $100,000,000”. Network security appliances should be configured to drop traffic to the associated IP only when the HTTP Host header matches mstr.ac, to avoid collateral impact.
Instantâneo das evidências enviadas
- Enviado
- Registros do livro-razão
- 1
- ID do caso
PD-20260219-1821D4- Artefato PDF
- Evidência em PDF
Texto completo da evidência
Acceptable Use Policy (AUP): The domain mstr.ac is actively engaged in phishing activities, which constitute a clear violation of your AUP that prohibits illegal activities, fraud, and deception.
Terms of Service (TOS): The continued operation of this domain contravenes your TOS, which reserves the right to suspend or terminate services for any violations, particularly those involving fraudulent activities.
Applicable Laws (RU):
Federal Law No. 149-FZ (On Information, Information Technologies and Information Protection): This law prohibits the dissemination of false information and imposes penalties for the use of information technology to commit fraud.
Criminal Code of the Russian Federation, Article 159 (Fraud): Engaging in phishing schemes constitutes fraud, which is punishable under this article, emphasizing the illegality of deceptive practices for financial gain.
Regulatory Note: Failure to take immediate action against this domain may result in regulatory scrutiny and potential liability under applicable laws. Non-compliance could expose your organization to legal consequences and reputational damage.
Data Coverage
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 10/08/2026
Linha do tempo de detecção
-
Cloudflare Radar
Varredura do Cloudflare Radar armazenada · Abrir varredura
Análise do VirusTotal
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo