MALICIOUS — HIGH
Перевірка домену fastcrup.com на фішинг і безпеку
fastcrup[.]
This domain, fastcrup.com, is identified as a credential theft operation specifically targeting cryptocurrency wallet users.
- VirusTotal
- 4/94
- Blocklists
- No stored match
- Доступність
- Контент недоступний · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
fastcrup.com — Контент недоступний (HTTP 502). Зведення доказів: VirusTotal 4/94 (alphaMountain.ai, Forcepoint ThreatSeeker, Gridinsoft, Sophos); URLQuery 2 alerts; PhishDestroy score 66/100. Реєстратор: NiceNIC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
This domain, fastcrup.com, is identified as a credential theft operation specifically targeting cryptocurrency wallet users. Analysis indicates the site impersonates legitimate wallet services or exchange platforms to deceive victims into entering sensitive credentials, including private keys, recovery phrases, or login details. The primary objective appears to be unauthorized access to digital assets, enabling threat actors to drain funds from compromised wallets. The infrastructure is designed to exploit users seeking quick access to crypto services, often through deceptive advertisements or phishing emails directing victims to the malicious domain. Infrastructure analysis reveals concrete indicators of malicious activity. The domain was registered on March 27, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar frequently associated with high-risk domains. It resolves to the IP address 172.67.199.203 and is currently flagged by 4 out of 95 security vendors on VirusTotal. Additionally, the domain appears on one security blocklist and has been documented in a threat intelligence pulse, further corroborating its malicious nature. The creation date, combined with the rapid flagging by security vendors, suggests a short-lived but highly targeted campaign. Users who visited fastcrup.com should take immediate action to mitigate potential risks. First, disconnect any devices used to access the site from the internet to prevent further data exfiltration. Next, revoke access to any cryptocurrency wallets or exchange accounts that may have been exposed, and transfer remaining assets to a new, secure wallet. Monitor all linked accounts for unauthorized transactions and enable multi-factor authentication where available. If credentials were entered, assume they are compromised and avoid reusing them across other platforms. Report the incident to relevant financial or crypto security teams for further investigation and potential recovery efforts.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Обсяг даних12 recorded checks
Розвіддані з мережевої безпеки Registrar context
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-09 03:54:29 UTC
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of fastcrup.com · checked Jun 26, 2026
Докази та зовнішні звітиIndependent lookups and source reports
PD-20260327-009D65 Recipient: abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.