MALICIOUS — HIGH
Проверка домена securesprintercores.live на фишинг и безопасность
securesprintercores[.]
Analysis of securesprintercores.live shows a credential‑phishing campaign masquerading as a fake airdrop.
- VirusTotal
- 2/93
- Blocklists
- 1 · ScamSniffer
- Доступность
- Контент недоступен · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
securesprintercores.live — Контент недоступен (HTTP 502). Тип мошенничества: Crypto Drainer. Сводка доказательств: VirusTotal 2/93 (Gridinsoft, SOCRadar); 1 external blocklist match (ScamSniffer); PhishDestroy score 58/100. Регистратор: NameCheap.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Evidence Analysis
Analysis of securesprintercores.live shows a credential‑phishing campaign masquerading as a fake airdrop. The domain was registered with NameCheap, Inc. on 9 June 2025 and is currently marked offline. DNS resolution points to 92.204.41.13, an address owned by AS29066 velia.net Internetdienste GmbH in France. The nameservers dns3.afeeshost.com, ns41.afeeshost.com and ns42.afeeshost.com are publicly listed, indicating the hosting provider is Afeeshost.
The site served HTTP 200 responses and presented the page title “Blockchain | EVM_RESOLVE”, a typical lure for cryptocurrency‑related scams. TLS was provided by a Let’s Encrypt R12 certificate, confirming the use of a free, automated certificate authority. VirusTotal recorded 2 detections out of 93 scanned engines, and the domain appears on two public blocklists, specifically PhishDestroy and ScamSniffer. Gridinsoft assigned a trust score of 0 / 100, reinforcing the malicious classification.
Evidence points to a fake airdrop scheme designed to harvest credentials, but the exact phishing page content has not been captured, leaving the specific lures and data‑collection mechanisms uncertain. Defenders should block the domain and its associated IP, add the observed nameservers to deny‑list rules, and monitor for any future re‑use of the same infrastructure. Network sensors should flag TLS connections to Let’s Encrypt‑issued certificates on the identified IP, and threat‑intel feeds should be updated with the domain, its registrar, and hosting details to aid rapid detection of re‑hosted variants.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Охват данных12 recorded checks
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of securesprintercores.live · checked Mar 6, 2026
Доказательства и внешние отчетыIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.