Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is complaint@gname.com.
The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
usdt[.]6-i[.]cc
“虚拟货币投资平台”
usdt.6-i.cc — Неперевірений. Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 4/91 (Chong Lua Dao, CRDF, Forcepoint ThreatSeeker, Gridinsoft); PhishDestroy score 71/100. Реєстратор: Gname.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, usdt.6-i.cc, is identified as a cryptocurrency credential theft operation designed to deceive users into disclosing wallet credentials or transferring funds to fraudulent accounts. The site masquerades as a legitimate virtual currency investment platform, using the Chinese title '虚拟货币投资平台' to target individuals interested in cryptocurrency trading. Analysis indicates the site employs social engineering tactics, such as fake login portals and investment dashboards, to harvest sensitive information or redirect victims to malicious smart contracts that drain wallet balances. Infrastructure analysis reveals multiple high-risk indicators confirming the domain's malicious nature. The domain was registered on February 21, 2026, through Gname.com Pte. Ltd., an uncommon registrar for legitimate financial services. It resolves to the IP address 104.19.169.112 and is currently offline, though it remains flagged by 6 out of 95 security vendors on VirusTotal. The site employed Cloudflare for hosting, a common tactic to obscure server origins, and utilized Node.js with Express for backend operations, alongside HSTS to create a false sense of security. Additionally, the domain appears on one security blocklist and was previously blocked by automated phishing detection systems. Users who visited usdt.6-i.cc should take immediate action to mitigate potential risks. First, disconnect any devices used to access the site from the internet and run a full antivirus scan to detect malware or unauthorized scripts. If wallet credentials or private keys were entered, transfer remaining funds to a new, secure wallet and revoke any connected smart contract approvals. Monitor financial accounts and transaction histories for unauthorized activity, and report the incident to relevant cryptocurrency exchanges or fraud reporting platforms. Avoid interacting with any communications or links associated with this domain, as they may lead to further exploitation.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 4 identified
JavaScript runtime built on Chrome V8 engine for server-side development.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comАналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of usdt.6-i.cc · checked Jun 27, 2026
Докази та зовнішні звіти
PD-20260203-97663B Recipient: complaint@gname.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога