crypto-portfolio-tracker[.]app
“Crypto Portfolio - Track Your Crypto Assets”
Сохранённое обнаружение
Обнаружена маскировка
- Тип маскировки
content_split- Оценка маскировки
- 1/6
Сводка доказательств
This domain, crypto-portfolio-tracker.app, was identified as a cryptocurrency credential phishing site designed to harvest wallet login credentials and private keys from unsuspecting users. The site masqueraded as a legitimate cryptocurrency portfolio tracker, presenting a fabricated interface labeled 'Crypto Portfolio - Track Your Crypto Assets' to deceive visitors into entering sensitive financial information. Such phishing schemes are commonly used to gain unauthorized access to digital wallets, leading to immediate asset theft and long-term financial fraud. Analysis indicates the domain was registered on February 21, 2026, through NameCheap, Inc., a registrar frequently utilized in phishing operations due to its accessibility and low-cost domain offerings. The site resolved to the IP address 216.150.1.1 and employed a Let's Encrypt SSL certificate to create a false sense of security. Detection metrics reveal that 3 out of 95 security vendors on VirusTotal flagged the domain as malicious, while it appeared on three independent security blocklists. Additional infrastructure analysis detected the use of Vercel hosting, HSTS headers, and Google Analytics, suggesting an attempt to mimic legitimate service deployment practices. Users who visited crypto-portfolio-tracker.app should immediately revoke any permissions granted to the site in browser-based wallet extensions or applications. All credentials entered on the site must be considered compromised and should be changed across all platforms where they were reused. Affected individuals should monitor their cryptocurrency wallets for unauthorized transactions and enable multi-factor authentication on all financial accounts. If private keys or recovery phrases were disclosed, users are advised to transfer remaining assets to a new, secure wallet. System scans using updated security tools are recommended to detect any residual malware or tracking mechanisms.
Data Coverage
Данные сетевой безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 12.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
VirusTotal
2 → 3
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of crypto-portfolio-tracker.app · checked Jun 27, 2026
Анализ конфигурации сайта
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание