MALICIOUS — CRITICAL
fundaraincs[.]com
PhishDestroy identifies fundaraincs.com as an active phishing domain masquerading as an investment portal, designed to trick users into disclosing financial credentials or transferring funds.
- VirusTotal
- 7/91
- Blocklists
- 2 · MetaMask, SEAL
- Доступність
- Останній відомий активний · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@registrar.eu.
The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
Jump to section
fundaraincs.com — Останній відомий активний (HTTP 200). Тип шахрайства: Investment Scam. Зведення доказів: VirusTotal 7/91 (ChainPatrol, alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft); URLQuery 3 alerts; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 85/100. Реєстратор: Hosting Concepts.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
PhishDestroy identifies fundaraincs.com as an active phishing domain masquerading as an investment portal, designed to trick users into disclosing financial credentials or transferring funds. The site leverages a recently registered domain, a Let’s Encrypt SSL certificate, and hosting on a server previously linked to abuse to appear legitimate. MetaMask and SEAL have already blocked access, and the domain has been flagged on security blocklists, indicating widespread suspicion of its activities.
This domain was flagged with 0 detections on VirusTotal despite being registered through Hosting Concepts B.V. (Registrar.eu) on April 27, 2026, and resolving to IP 198.251.88.6. Security vendors are still assessing its behavior, but its inclusion on multiple blocklists and blocking by major platforms like MetaMask suggest a high likelihood of malicious intent. The domain’s age and lack of detections make it a moving target, with attackers likely iterating rapidly to evade detection.
If you visited fundaraincs.com, avoid entering any credentials, payment details, or personal information. Disconnect from the network immediately and scan your device for malware or unauthorized access. Report the domain to your IT team or security provider, and consider changing passwords for any accounts exposed to this site. Monitor financial transactions closely for unauthorized activity, and use a reputable security tool to verify links before clicking.
Обсяг даних12 recorded checks
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Private YARA rules | www.youtube.com/s/player/0980151a/player_embed_es6.vflset/en_us/base.js |
audit | Hunting_JS_WebAssembly |
| Hagezi Threat Feed | fundaraincs.com |
malicious | Sinkholed |
| Quad9 DNS | fundaraincs.com |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 9 identified
YouTube is a video sharing service where users can create their own profile, upload videos, watch, like and comment on other videos.
www.youtube.com 100% впевненостіBootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com 100% впевненостіSmartsupp is a live chat tool that offers visitor recording feature.
www.smartsupp.com 100% впевненостіMoment.js is a free and open-source JavaScript library that removes the need to use the native JavaScript Date object directly.
momentjs.com 100% впевненостіjQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% впевненостіPopper is a positioning engine, its purpose is to calculate the position of an element to make it possible to position it near a given reference element.
popper.js.org 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of fundaraincs.com · checked Apr 30, 2026
Докази та зовнішні звітиIndependent lookups and source reports
PD-20260430-5CA27A Recipient: abuse@registrar.eu Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.