Перейти до звіту про безпеку
Checked 09.08.2026 Ref 87D1CE4F

MALICIOUS — HIGH

firstcallcover[.]com

This domain poses a significant threat as a generic credential theft site, designed to trick users into divulging sensitive information.

69/100 evidence score · High
VirusTotal
3/91
Blocklists
No stored match
Доступність
Останній відомий активний · HTTP 302
Report / Add Evidence Appeal this listing
No capture stored

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Цей домен було позначено як шкідливий
Системи безпеки повідомляють про виявлення: 3. Будьте дуже обережні — не вводьте облікові дані чи особисту інформацію.
Jump to section
Огляд звіту

firstcallcover.com — Останній відомий активний (HTTP 302). Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); PhishDestroy score 69/100. Реєстратор: Fewmoretaps OU d/b/a T….

Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.

Evidence Analysis

Ref 87D1CE4F

firstcallcover: Credential Theft Exposed

This domain poses a significant threat as a generic credential theft site, designed to trick users into divulging sensitive information.

This domain poses a significant threat as a generic credential theft site, designed to trick users into divulging sensitive information. PhishDestroy identifies the threat as particularly insidious due to its ability to blend in with legitimate sites, with 0 out of 95 VirusTotal scanners flagging it as malicious, registered through Fewmoretaps OU d/b/a Trustname.com on April 28, 2026, and currently appearing on 1 security blocklist.

The domain's creation date and its resolution to IP 185.113.8.69 are key factors in assessing its risk, with the registrar information and blocklist count of 1 providing crucial evidence of its potential for harm, now taken offline.

Users who may have visited firstcallcover.com should immediately take steps to secure their online accounts and monitor their financial transactions, given the site's specific threat of credential theft, and report any suspicious activity, as the site's offline status does not negate the potential damage already done, emphasizing the need for vigilance and prompt action to protect sensitive information.

Stored source results

Recorded verdicts and infrastructure observations for this domain.

VirusTotal
VirusTotal
3 det.
OTX references
Сертифікат TLS
Google Trust Services / WE1
Вік
3 mo
Зафіксований статус
Останній відомий активний 302
PhishDestroy
DestroyList
У списку
Обсяг даних12 recorded checks
VirusTotal 3 / 91 URLQuery не перевірено PhishStats не перевірено OTX 23 community references CF Radar no data URLScan capture not submitted URLScan verdict висновок недоступний Блокування DNS не перевірено TLS valid certificate, 62d WHOIS 3 mo old Знімок екрана не зафіксовано Ланцюжок перенаправлень не досліджено
Розвіддані з мережевої безпеки Registrar context
Registrar context Trustname
Stored registration data identifies Trustname / Fewmoretaps OÜ (IANA 4318) as the registrar. PhishDestroy maintains a separate registrar investigation; that material is contextual and is not an independent detection for this domain.
Trustname Investigation

Процес реагування на загрози Pipeline

Відкриття
Checks
Reports
Доступність
7/9

Статус у публічних блоклистах

Аналітика доменів

Домен
Сервер / ASN cloudflare · AS200019 ALEXHOST SRL
IP Context Cloudflare shared edge origin IP hidden Репутація Edge-IP не пов’язана з цим доменом.
IP-адреса 185.113.8.69 CDN
ГеолокаціяNL Almere Stad, NL
МережаAS200019 · Alexhost SRL
Зворотний пошук IPviewdns.info → rapiddns.io →
Початкова IP-адреса прихована за проксі CDN. Результати зворотного IP для крайової адреси містять непов’язаних орендарів; для пошуку джерела потрібен пасивний DNS або дані прозорості сертифіката.
РеєстраціяСтворено 28.04.2026 (102d)
Статус HTTP302 Found (Temporary)
Технічні деталіDNS, SAN-адреси SSL, мітки часу
Вперше виявлено15.06.2026
Сервери іменseth.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 12.07.2026scanned 02.08.2026
ICANN OVERSIGHT

Акредитація та контекст RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Нічого не надсилається автоматично.
Поскаржитися на цей домен Надішліть докази та допоможіть захистити інших

Аналіз VirusTotal

3 / 91 постачальників безпеки позначили цей домен
View on VT
Last analyzed First positive detection Previous stored snapshot: 0 detections
CRDF
Gridinsoft
SOCRadar
Докази та зовнішні звітиIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.

Європол
Знайдіть офіційний канал звітності для вашої країни ЄС
National police directory
Остерігайтеся шахраїв, які обіцяють повернути втрачені кошти! Злочинці можуть знову зв’язатися з жертвами, видаючи себе за слідчих, адвокатів або агентів із відновлення. Не сплачуйте авансових зборів і не діліться обліковими даними. Дізнайтеся більше про шахрайство у сфері відшкодування збитків →

Зверніться до місцевих органів влади

Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.

Довідник 97 країн
Чернетка за допомогою штучного інтелекту — деталі інциденту обробляються постачальником штучного інтелекту Перегляньте та подайте його самостійно
Вбудувати цей звітRead-only HTML widget
HTML · IFRAME

Вбудувати цей звіт

Поділіться цією інформацією про загрози на своєму веб-сайті або в блозі

embed.html
<iframe
  src="https://phishdestroy.io/uk/embed/domain/firstcallcover.com"
  title="PhishDestroy threat report for firstcallcover.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Дуже щирий лист-подяка

Генератор сатиричних чернеток

Одержувач
Контекст зборів

Це сатирична чернетка. Суми зборів є оцінками; ми не стверджуємо, що вони точно стосуються цього домену.