easybrop[.]com
“EasyDrop - Кейсы КС2, Официальный Сайт Открытия кейсов CS2”
Сводка доказательств
The domain easybrop.com has been identified as a phishing site impersonating a Counter-Strike 2 (CS2) case-opening platform, specifically targeting users with the false pretense of offering in-game item rewards. Analysis indicates this domain operates under the page title 'EasyDrop - Кейсы КС2, Официальный Сайт Открытия кейсов CS2,' suggesting an attempt to deceive users into engaging with fraudulent case-opening mechanisms, likely involving credential harvesting or cryptocurrency theft. As of the latest assessment, the domain is offline, though prior activity warrants continued monitoring. Infrastructure analysis reveals that easybrop.com resolves to the IP address 172.67.137.175 and was registered on February 21, 2026, through NiceNIC International Group Co., Limited. Detection metrics indicate elevated risk, with 13 of 95 security vendors on VirusTotal flagging the domain as malicious. The domain appears on one security blocklist and holds a trust score of 0/100, reinforcing its classification as a high-risk entity. The use of a content delivery network-associated IP suggests potential obfuscation of the true hosting origin, a common tactic in phishing infrastructure. Current status confirms the domain is offline, though its prior activity and registration details indicate a deliberate attempt to exploit CS2 players. Organizations and individuals are advised to block the domain and associated IP at the network level. Users should be educated on recognizing phishing attempts, particularly those leveraging gaming-related lures. Security teams are recommended to monitor for similar domains registered via NiceNIC or resolving to the same IP range, as these may represent related threat actor infrastructure. Proactive measures, including domain reputation checks and endpoint protection updates, are critical to mitigating such threats.
Data Coverage
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | www.easybrop.com |
malicious | Sinkholed |
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
VirusTotal
3 → 6
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
-
VirusTotal
3 → 13
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of easybrop.com · checked Jun 26, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание