fasucup[.]com
“ÐоÑÑигайÑе ÐовÑÑ ÐÑÑоÑ. РазвивайÑеÑÑ ÐмеÑÑе Ñ ÐÑо!”
This domain, fasucup.com, is identified as a credential theft phishing infrastructure targeting Russian-speaking users. The page title, "Достигайте Новых Высот. Развивайтесь Вместе с Про!" (Achieve New Heights. Grow Together with Pro!), suggests a fraudulent career development or professional networking scheme designed to harvest login credentials. No direct brand impersonation is evident, but the social engineering approach mimics legitimate employment or training platforms to deceive victims. The absence of cryptocurrency-related content or wallet drainer scripts further supports classification as a credential theft operation. Infrastructure analysis reveals the domain was registered on March 27, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar frequently associated with high-risk domains. It resolves to the IP address 188.114.96.3, which has been linked to other malicious activities. Security vendor detection on VirusTotal stands at 6/95, indicating moderate but not universal recognition of the threat. The domain appears in 8 threat intelligence pulses on AlienVault OTX and is listed on at least one security blocklist. Gridinsoft assigns a trust score of 0/100, reinforcing its malicious classification. No entries were found in Google Safe Browsing at the time of analysis. The domain has been taken offline, likely due to enforcement actions by security providers or hosting interventions. Despite its current inactive status, residual risk remains due to the domain's recent registration and its presence in multiple threat intelligence feeds. Organizations are advised to monitor for re-activation attempts and block the domain at the DNS or proxy level. Users who may have interacted with the site should reset credentials for any accounts accessed during the exposure window, particularly if similar social engineering lures were encountered. Network defenders should correlate the IP address 188.114.96.3 with internal logs to identify potential prior compromise.
Запис надісланого повідомлення
Знімок надісланих доказів
- Надіслано
- Записи журналу
- 1
- ID справи
PD-20260327-A45C63- Заголовок збереженої сторінки
- Достигайте Новых Высот. Развивайтесь Вместе с Про!
- PDF-файл
- PDF із доказами
Правова підстава
Повний текст доказів
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
Розвіддані з мережевої безпеки Registrar context
Процес реагування на загрози Pipeline
Перевірка за блок-листами
Джерел: 10 · синхронізовано 10.08.2026
Хронологія виявлення
Збережені спостереження у хронологічному порядку.
-
VirusTotal
VirusTotal: 4 → 6
-
Доступність
Доступність: уперше зафіксовано як dns_inactive
f93a11f87e4d -
Доступність
Доступність: dns_inactive → unknown
4586cbe56cee -
Доступність
Доступність: unknown → dns_inactive
60629d6e5363 -
Доступність
Доступність: dns_inactive → inactive
332089ad124c -
Доступність
Доступність: inactive → dns_inactive
f52d526b76a1 -
Доступність
Доступність: dns_inactive → unknown
deb31d957d98 -
Доступність
Доступність: unknown → inactive
25b3c26f6754 -
Доступність
Доступність: inactive → unknown
42d4c8f8f33e -
Доступність
Доступність: unknown → dns_inactive
6dfe9145995c
Показати всі (7)
-
Доступність
Доступність: dns_inactive → inactive
0d04fc853297 -
Доступність
Доступність: inactive → dns_inactive
641ed81dc4d5 -
Доступність
Доступність: dns_inactive → unknown
2d8934c8e2d2 -
Доступність
Доступність: unknown → inactive
248a268bd8ed -
Доступність
Доступність: inactive → unknown
e232f74bbbdf -
Доступність
Доступність: unknown → dns_inactive
d0b7046e8c2f -
Доступність
Доступність: dns_inactive → inactive
d0d81a7a770d
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of fasucup.com · checked Jun 26, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога