Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
cr7gold[.]cc
“Suspected phishing site | Cloudflare”
Сводка доказательств
This domain is flagged as an active generic phishing site with an elevated risk level, specifically designed to deceive users through fake cryptocurrency investment opportunities. Analysis indicates the infrastructure is engineered for credential harvesting and financial fraud, with page content mimicking legitimate digital asset platforms to exploit user trust. Infrastructure analysis reveals the domain cr7gold.cc was registered on February 21, 2026, through Global Domain Group LLC, an uncommon registration pattern suggesting potential abuse. It resolves to IP address 104.21.6.91, hosted on Cloudflare's network (AS13335), which is frequently leveraged by threat actors to obscure origin servers. The domain is detected by 17 out of 95 security vendors on VirusTotal, with a Let's Encrypt SSL certificate (serial number E8) providing superficial legitimacy. It appears on one security blocklist and is actively blocked by PhishDestroy, confirming its malicious classification. Mitigation requires immediate blocking of the domain and its resolving IP across all network security controls. Users should be alerted to the specific threat of cryptocurrency investment fraud, with emphasis on verifying platform legitimacy through official channels. Security teams should monitor for related domains registered through the same registrar or resolving to identical Cloudflare IP ranges. Credential reset protocols should be enforced for any accounts potentially exposed to this phishing infrastructure, particularly those associated with digital asset services.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260206-EE9899- PDF-файл
- PDF с доказательствами
Правовое основание
Полный текст доказательств
Acceptable Use Policy (AUP): The domain cr7gold.cc is engaged in phishing activities, which constitutes a clear violation of your AUP prohibiting illegal activities and fraud.
Terms of Service (TOS): The use of this domain for deceptive practices violates your TOS, which reserves the right to suspend or terminate services for such violations.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. law prohibits unauthorized access to computers and the use of fraudulent schemes, which applies to phishing activities.
Wire Fraud Statute (18 U.S.C. § 1343): This law criminalizes schemes to defraud individuals or entities via electronic communications, directly applicable to the activities associated with cr7gold.cc.
CAN-SPAM Act (15 U.S.C. § 7701): This act regulates commercial email and prohibits misleading information, which is relevant given the deceptive nature of phishing.
Regulatory Note: Failure to take immediate action against this domain may expose your organization to legal liabilities and regulatory scrutiny. Compliance with your AUP and applicable laws is imperative to mitigate risks associated with domain abuse.
История сообщений 1
- Сообщение № 1 ⚠️ ESCALATION #2 (42h active): Phishing - cr7gold[.]cc
Data Coverage
Сигналы безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 12.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Статус домена
Доступен → Недоступен
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
-
Статус домена
Недоступен → Доступен
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание