seatrades[.]top
“seatrades.top/main.html”
seatrades.top — Контент недоступен (HTTP 502). Сводка доказательств: VirusTotal 1 detections (engine total unavailable) (Webroot); Google Safe Browsing flagged; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 80/100. Регистратор: Namemart.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis indicates that the domain seatrades.top was registered on 5 March 2026 through Namemart Limited and is currently hosted behind Cloudflare (AS13335) with the public address 104.21.42.170 located in the United States. The site resolves to a Cloudflare‑provided IP and uses Cloudflare Browser Insights, HTTP/3, Vue.js and Lodash on the client side. No TLS certificate was observed, meaning the site served over plain HTTP at the time of capture. Google Safe Browsing lists the domain for social engineering, and three independent blocklists (PhishDestroy, MetaMask, SEAL) have added it.
VirusTotal recorded a single positive detection out of 95 scanners, confirming malicious intent. The page title returned by the server is “seatrades.top/main.html”, but the content has not been publicly released, so the exact phishing payload cannot be verified. The domain is presently taken offline, which limits immediate exposure but does not remove the historical risk.
Defenders should continue to block the domain at network perimeter and DNS layers, monitor outbound connections to the associated IP, and consider adding the host to internal blocklists. Ongoing observation of Cloudflare‑originated traffic for this address is advised, as the infrastructure could be reused for future campaigns. Until further artefacts become available, the confidence level remains elevated due to the combination of registry data, blocklist presence, Safe Browsing flag, and the positive VirusTotal detection.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 5 identified
Progressive JavaScript framework for building user interfaces.
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
PD-20260305-FEDDA2 Recipient: abuse@namemart.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание