facdocspdfouvrir[.]weebly[.]com
“My Site - Home”
Збережене спостереження
Зафіксована відмінність заголовків
Зведення доказів
PhishDestroy identifies an active crypto drainer campaign hosted at facdocspdfouvrir.weebly.com, designed to trick users into downloading malicious documents that drain cryptocurrency wallets. The domain mimics legitimate document-sharing platforms, tricking victims into opening what appears to be a PDF or Office file. Upon execution, the payload silently interacts with connected wallets (e.g., MetaMask, Phantom) to initiate unauthorized transactions, often draining funds within seconds of user interaction. This attack vector is particularly dangerous due to its reliance on social engineering—users believe they are viewing a harmless file when in fact they are executing a malicious script. Security teams should treat this as a high-priority threat due to the irreversible nature of cryptocurrency theft. This domain was flagged by multiple threat intelligence sources, including OpenPhish. VirusTotal analysis reveals that 18 out of 95 security vendors have marked this domain as malicious, indicating a significant but not universal consensus on its harmful nature. The domain resolves to IP 74.115.51.8 and uses a Let’s Encrypt SSL certificate, which may lull users into a false sense of security. Registered through Safenames Ltd in 2006, this domain has been active for nearly two decades, suggesting it may have been compromised or repurposed for malicious use. It has also been identified on one security blocklist, further confirming its threat status. The combination of longevity, legitimate-appearing infrastructure, and active abuse makes this a sophisticated and persistent threat. If users or employees have visited facdocspdfouvrir.weebly.com, they should immediately disconnect from the internet and scan all devices with updated antivirus software. Cryptocurrency wallet extensions should be inspected for unauthorized permissions, and any suspicious transactions should be reported to the wallet provider or exchange. Organizations should block this domain at the network perimeter and alert users to be cautious of unsolicited document-sharing links. Implementing browser-based security policies to restrict access to untrusted domains can mitigate the risk of similar attacks. Threat hunting teams should search for indicators of compromise (IoCs) related to this domain, including connections to 74.115.51.8 and any unusual wallet activity.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 12.08.2026
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Registration: weebly.com
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain weebly.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of facdocspdfouvrir.weebly.com · checked Mar 27, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога