royalcoinshug[.]com
“1 new message”
royalcoinshug.com — Контент недоступний (HTTP 502). Уособлення бренду: Aave. Зведення доказів: VirusTotal 14/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); Google Safe Browsing flagged; PhishDestroy score 92/100. Реєстратор: PDR.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis of royalcoinshug.com shows a recently created (21 Feb 2026) domain that was taken offline but left a forensic trail indicating a high‑risk generic phishing operation. The site was protected by a Let’s Encrypt R13 certificate and served over HTTP/3, employing a front‑end stack that included D3, xCharts, Bootstrap, LiteSpeed, Select2, jQuery and FancyBox. Google Safe Browsing flagged the domain for social engineering, and VirusTotal recorded 14 of 93 security vendors marking it as malicious, reinforcing the suspicion of a phishing payload. Gridinsoft assigned a trust score of 0 / 100, and the domain appears on one additional security blocklist besides PhishDestroy, confirming its inclusion in active threat feeds.
Infrastructure analysis reveals the host IP 198.251.81.188 belongs to AS53667 (FranTech Solutions) in the United States, with authoritative nameservers ns17.asurahosting.com and ns18.asurahosting.com, typical of disposable hosting services. The only visible page element is a title reading "1 new message," providing no further insight into the targeted brand or credential‑collection mechanism. Consequently, the precise impersonated entity remains uncertain, and no payload samples have been captured.
Defenders should immediately block the domain and its hosting IP at DNS and firewall layers, ingest the associated hash and indicator data into SIEM and EDR solutions, and monitor for re‑registration or similar patterns from the same ASN or hosting provider. Email gateways should be tuned to flag messages containing the domain or related social‑engineering cues, and threat‑intelligence teams should track the ASN for future malicious registrations. Continuous re‑scanning of the domain, should it reappear, is advised to capture any evolving payloads or new indicators.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 8 identified
Popular CSS framework for responsive, mobile-first web development.
High-performance web server compatible with Apache configurations.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Аналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of royalcoinshug.com · checked Mar 2, 2026
Докази та зовнішні звіти
PD-20260219-1D6292 Recipient: emmabest45@proton.me Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога