moneyfast[.]top
“Moneyfast: Most Popular Online Crypto Casino Based on Blockchain”
moneyfast.top — Контент недоступний. Уособлення бренду: Genericcrypto; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 11/95 (Criminal IP, alphaMountain.ai, BitDefender, CyRadar, ESET); URLQuery 100 det.; URLScan malicious verdict; PhishDestroy score 95/100. Реєстратор: Web Commerce Communica….
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain moneyfast.top was registered on August 28, 2025 through Web Commerce Communications Limited and was taken offline before the report date of July 24, 2026. Analysis shows the site resolved to IP address 69.5.189.57, which belongs to ASN 42624 (Global-Data System IT Corporation) and is geolocated in Switzerland. The domain is listed on one external security blocklist and is specifically blocked by the PhishDestroy service, indicating that it was recognized as malicious by at least one industry‑operated filter. A Gridinsoft trust score of 0 out of 100 further confirms the poor reputation of the host.
No SSL certificate was observed, meaning the site operated over plain HTTP, a common characteristic of low‑effort phishing or scam deployments. The page title retrieved from the site—"Moneyfast: Most Popular Online Crypto Casino Based on Blockchain"—suggests the campaign was positioned as a crypto‑focused gambling platform, and forensic inspection linked the hosting files to the publicly available "Gambler Scam" phishing kit. VirusTotal analysis recorded 11 of 95 scanned security vendors flagging the domain as malicious, providing independent vendor corroboration of its threat status. The nameserver configuration consists of four generic nameserverhub.com entries, which is typical for domains that are quickly provisioned for malicious campaigns.
While the site is currently offline, its infrastructure—particularly the Swiss‑based IP range and the lack of TLS—remains a potential vector for future re‑use. Defenders should continue to block the domain and its associated IP address, monitor the AS42624 range for similar activity, and add the domain to internal blocklists. Ongoing observation of the nameserver set and any re‑registration attempts is advised, as threat actors frequently recycle compromised hosting resources for new campaigns.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога