cryptowalletrecoveryexperts[.]com
“Crypto Wallet Recovery Experts – Recover Your Lost Crypto Assets”
cryptowalletrecoveryexperts.com — Неперевірений. Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 6/91 (alphaMountain.ai, Chong Lua Dao, CRDF, Gridinsoft, Kaspersky); PhishDestroy score 73/100. Реєстратор: Global Domain Group.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain cryptowalletrecoveryexperts.com is currently active and classified as a high‑risk crypto drainer. HTTP requests return a 200 status code and the site is hosted on a LiteSpeed‑powered WordPress installation backed by MySQL, with client‑side libraries including Yoast SEO, Underscore.js, jQuery and jQuery Migrate. The TLS certificate is issued by Let’s Encrypt (R12) and the domain was registered on July 17 2025 through Global Domain Group LLC. DNS resolves to 198.251.88.188, an address owned by AS53667 FranTech Solutions in the United States. The authoritative nameservers are ns7.my‑control‑panel.com and ns8.my‑control‑panel.com. The page title explicitly advertises “Crypto Wallet Recovery Experts – Recover Your Lost Crypto Assets,” matching the recovered‑scam phishing kit observed in other campaigns. The domain appears on one security blocklist and is listed as blocked by PhishDestroy. VirusTotal scans show two of ninety‑five security vendors flagging the host, indicating some malicious indicators. Defenders should add the domain and its IP to outbound‑allow lists for blocking, monitor DNS queries for the associated nameservers, and consider sinkholing the IP range if feasible. Continuous threat‑intel feeds should be consulted for any emerging indicators tied to the Recovery Scam kit, and incident response teams should be prepared to advise users who may be targeted with wallet‑recovery lures.
Сигнали безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 10 identified
Open-source CMS powering over 40% of websites worldwide.
Open-source relational database management system.
Server-side scripting language designed for web development.
High-performance web server compatible with Apache configurations.
Plugin to detect and restore deprecated jQuery features.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
Web analytics service tracking website traffic and user behavior.
marketingplatform.google.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Аналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога