ctpteam[.]us[.]cc
Сводка доказательств
This domain, ctpteam.us.cc, is identified as a credential harvesting phishing site designed to deceive users into submitting sensitive login credentials, financial details, or personal information. Analysis indicates the infrastructure is engineered to mimic legitimate services, likely targeting corporate or financial sector users through social engineering tactics. The domain’s design and hosting patterns align with known phishing campaigns that exploit urgency or authority to extract confidential data, which may later be used for unauthorized access, fraud, or identity theft. Infrastructure analysis reveals concrete indicators of malicious intent. The domain resolves to the IP address 124.156.241.125 and has been flagged by 15 out of 95 security vendors on VirusTotal, with detections spanning categories such as phishing, fraud, and malicious URL. It appears on one security blocklist, further corroborating its risk profile. Registered through Gname.com Pte. Ltd. on June 12, 2026, the domain’s creation date suggests it was established specifically for short-term malicious use, a common trait in phishing operations. The registrar’s history and the domain’s rapid takedown align with patterns observed in disposable phishing infrastructure. Users who visited ctpteam.us.cc or interacted with its content should take immediate remedial actions. First, revoke any credentials entered on the site, particularly for financial, email, or corporate accounts, as these are likely compromised. Monitor linked accounts for unauthorized transactions or changes, and enable multi-factor authentication where available to mitigate further risk. If the domain was accessed in a corporate environment, report the incident to internal security teams for network-level analysis, including DNS logs and endpoint detection reviews. Given the domain’s elevated risk level and offline status, remain vigilant for follow-up attacks, such as targeted phishing emails or malware distribution, which may leverage stolen data for broader exploitation.
Data Coverage
Данные сетевой безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 12.08.2026
10 внешних источников под наблюдением Совпадений нет
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание