Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
crystaldiskmark[.]app
“CrystalDiskMark | Free Disk Benchmark for Windows”
Зведення доказів
This domain, crystaldiskmark.app, poses a specific threat as a generic phishing site designed to impersonate the legitimate CrystalDiskMark disk benchmarking utility. By replicating the official page title 'CrystalDiskMark | Free Disk Benchmark for Windows,' the site aims to deceive users into downloading malicious software or providing sensitive information under the guise of a trusted tool. The domain is currently active and resolving to IP 188.114.96.3, indicating ongoing operation and potential harm to visitors who mistake it for the genuine software.
Technical indicators confirm the threat: VirusTotal reports 0 detections out of 95 security vendors, meaning no antivirus engines have flagged the domain yet, which may allow it to bypass initial automated defenses. The domain was registered on March 06, 2026, through Spaceship, Inc., a registrar that does not inherently indicate malicious intent but is noted for completeness. No blocklist data is available in the provided intelligence, but the recent creation date and lack of detection suggest the site is new and may be actively evading security scanners. The IP address 188.114.96.3 is associated with Cloudflare, which can obscure the true hosting origin and complicate takedown efforts.
Users who have visited crystaldiskmark.app should immediately disconnect from the network and run a full antivirus scan using updated definitions. If any files were downloaded or credentials entered, change passwords for all accounts, especially those related to financial services or email, using a different, secure device. Monitor accounts for unauthorized activity and consider enabling two-factor authentication where available. Report the domain to local cybersecurity authorities or the registrar for further investigation. Avoid interacting with the site again and warn others about its fraudulent nature.
Знімок надісланих доказів
- Надіслано
- Записи журналу
- 1
- ID справи
PD-20260702-C8E7F9- Заголовок збереженої сторінки
- CrystalDiskMark | Free Disk Benchmark for Windows
- PDF-файл
- PDF із доказами
Правова підстава
Повний текст доказів
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (Unknown):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
8 зовнішніх джерел під наглядом Збігів немає
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Аналіз конфігурації сайту
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога