instantflashusdt[.]com
Перевірка домену instantflashusdt.com на фішинг і безпеку
“Instant Flash USDT | Buy Instant Flash USDT | Transfer Instant Flash USDT”
instantflashusdt.com — Останній відомий активний (HTTP 200). Зведення доказів: VT 3/91 (Bfore.Ai PreCrime, CRDF, Gridinsoft); URLQuery 0; URLScan no malicious verdict; GSB no flag; BL 0; PD 74/100. Реєстратор: Cosmotown.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy first observed instantflashusdt.com on Jan 24, 2026. A positive finding was recorded by VirusTotal. Evidence score: 74/100.
VirusTotal recorded 3 detections among 91 engines: Bfore.Ai PreCrime, CRDF, Gridinsoft on Aug 5, 2026 at 14:17 UTC. The external blocklist snapshot contained no matches on Aug 7, 2026 at 10:20 UTC. URLQuery recorded no positive detection on Jan 24, 2026 at 21:47 UTC. Google Safe Browsing returned no flag on Mar 2, 2026 at 20:35 UTC. URLScan completed without a malicious verdict (score 0) on Jan 24, 2026 at 17:43 UTC.
HTTP 200 was recorded on Aug 7, 2026 at 10:16 UTC. Registration records list Cosmotown, Inc. as the registrar. At collection time, the domain resolved to 157.10.98.27. Captured page title: “Instant Flash USDT | Buy Instant Flash USDT | Transfer Instant Flash USDT”. DOM analysis completed on Jul 9, 2026 at 02:21 UTC; stored DOM score 71/100. IoC extraction completed on Jul 29, 2026 at 02:38 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators.
Stored full analysis24.07.2026
The domain instantflashusdt.com was registered on 2026-02-21 through Cosmotown, Inc. and currently resolves to the IP address 157.10.98.27, which is announced as part of AS151704 belonging to BHARAT DATACENTER in India. The authoritative nameservers are ns1.heroxhost.com and ns2.heroxhost.com, and the domain publishes an MX record that points to itself with priority 0, a configuration often used by malicious operators to retain control of mail flow. The site serves content over HTTPS using a Let’s Encrypt R12 certificate, indicating that encryption is present but does not guarantee legitimacy. An HTTP request returns status code 200 and the server reports LiteSpeed with HTTP/3 support, confirming a modern web stack. The page title presented by the site – “Instant Flash USDT | Buy Instant Flash USDT | Transfer Instant Flash USDT” – directly references the USDT cryptocurrency, suggesting an attempt to lure victims seeking rapid USDT transactions.
No additional branding or brand-specific language is observed beyond the title, and the content of the page has not been publicly disclosed. Reputation signals are strongly negative. Gridinsoft assigns a trust score of 0 out of 100, and the domain appears on a known security blocklist. PhishDestroy has already listed the domain as blocked, and two of ninety-three VirusTotal scanners have flagged it as malicious. The combination of a newly created domain, low trust score, presence on blocklists, and active phishing classification indicates a high-risk profile.
Uncertainty remains regarding the exact payload delivered to visitors, as no malware hashes or sandbox reports are available in the current intelligence set. Defenders should therefore treat any interaction with instantflashusdt.com as hostile. Recommended mitigation steps include adding the domain and its resolving IP to deny-list rules in perimeter firewalls and DNS filtering solutions, monitoring outbound traffic for connections to 157.10.98.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
ICANN отримала гроші. Підзвітність так і не з’явилася.
Для цього gTLD зазначений вище реєстратор працює за договором з ICANN. ICANN стягує щорічні, змінні та транзакційні збори, пов’язані з реєстраціями, продовженнями та трансферами.
Акредитація: монетизована. Підзвітність: будь ласка, перевірте пізніше.
Далі починається магія: ICANN пише RAA §3.18, реєстратор розслідує зловживання у власній клієнтській базі, а жертви безкоштовно надають докази, поки кожна ланка чекає, що діяти почне хтось інший. Якщо це допомагає жертвам почуватися безпечніше — чудово: рахунок спрацював.
Технології · 2 identified
High-performance web server compatible with Apache configurations.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Аналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of instantflashusdt.com · checked Mar 6, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Про цей звіт: instantflashusdt.com
Цей звіт представляє останні збережені докази, доступні PhishDestroy. Позначки часу джерела відображаються, якщо вони доступні; доступність і рішення постачальника можуть змінитися після отримання.
Захоплений сайт відображав назву сторінки “Instant Flash USDT | Buy Instant Flash USDT | Transfer Instant Flash USDT”.
Станом на 07.08.2026 instantflashusdt.com було виявлено системами безпеки 3.
Якщо ви вважаєте, що цей список є неточним, подати апеляцію. Щоб дізнатися про нашу методологію, відвідайте Сторінка поширених запитань.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога