paidtotrade[.]net
“Paid To Trade - Firm without Daily Drawdown rule”
paidtotrade.net — Непроверенный. Олицетворение бренда: Across; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 3/91 (alphaMountain.ai, CRDF, Gridinsoft); PhishDestroy score 65/100. Регистратор: Hostinger.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain paidtotrade.net is a cryptocurrency scam site that impersonates the brand 'across' through brand impersonation phishing. It presents itself as a trading platform under the title 'Paid To Trade - Firm without Daily Drawdown rule' but is designed to deceive users into transferring cryptocurrency under false pretenses. No drainer kit was identified, and the site is currently taken offline, though it remains a documented threat.
Technical indicators confirm paidtotrade.net as a malicious domain. It was flagged by 1 of 95 VirusTotal security vendors, including SOCRadar, and appears on 1 security blocklist (PhishDestroy). The domain was registered on 2024-10-28 via HOSTINGER operations, UAB, and resolves to the IP address 92.113.28.192, hosted in France under AS47583. It uses an SSL certificate issued by Let's Encrypt (R13) and Cloudflare nameservers (olga.ns.cloudflare.com and rudy.ns.cloudflare.com). AlienVault OTX recorded the domain in 1 threat intelligence pulse, and Gridinsoft assigned it a trust score of 39/100. Detected technologies include WordPress, MySQL, PHP, and LiteSpeed, among others.
Users who interacted with paidtotrade.net should assume their cryptocurrency wallet or credentials may be compromised. Revoke any token approvals granted to the site and transfer remaining funds to a new wallet. If login credentials were entered, change passwords immediately and enable two-factor authentication on all related accounts. Report the domain to relevant platforms, including the impersonated brand 'across,' and submit it to threat intelligence feeds such as Google Safe Browsing, PhishTank, or URLVoid to prevent further abuse.
Сигналы безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 16 identified
WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. Features include a plugin architecture and a template system.
wordpress.org 100% уверенностиUnderscore.js is a JavaScript library which provides utility functions for common programming tasks. It is comparable to features provided by Prototype.js and the Ruby language, but opts for a functional programming design instead of extending object prototypes.
underscorejs.org 100% уверенностиNitroPack creates optimised HTML cache for fast page loading experience.
nitropack.io 100% уверенностиKlaviyo is an email and SMS marketing platform for online businesses.
www.klaviyo.com 100% уверенностиJSDelivr is a free public CDN for open-source projects. It can serve web files directly from the npm registry and GitHub repositories without any configuration.
www.jsdelivr.com 100% уверенностиQuery Migrate is a javascript library that allows you to preserve the compatibility of your jQuery code developed for versions of jQuery older than 1.9.
github.com 100% уверенностиjQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% уверенностиHostinger is an employee-owned Web hosting provider and internet domain registrar.
www.hostinger.com 100% уверенностиFacebook pixel is an analytics tool that allows you to measure the effectiveness of your advertising.
facebook.com 100% уверенностиDataTables is a plug-in for the jQuery Javascript library adding advanced features like pagination, instant search, themes, and more to any HTML table.
datatables.net 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
“I am writing this review to warn all traders about Paid To Trade. Do not give them a single cent. This is a textbook "Bait and Switch" scam. The Short Version: I paid for an evaluation, passed it legitimately, and was then refused to use the funded account. Instead, they demanded I deposit $1,500 of my own money into an unregulated "live" account to continue. When I refused, they blocked my account and kept my payouts. Detailed Experience: The Bait: I purchased an evaluation based on th”
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание