usdtchecks[.]net
Перевірка домену usdtchecks.net на фішинг і безпеку
“USDT CHECKS — Send & Receive Crypto Instantly”
usdtchecks.net — Контент недоступний (HTTP 502). Уособлення бренду: Across; Тип шахрайства: Seed Phrase Theft. Зведення доказів: VirusTotal 2/93 (Gridinsoft, SOCRadar); PhishDestroy score 56/100. Реєстратор: NameCheap.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain usdtchecks.net was a generic phishing site posing as a cryptocurrency service, specifically targeting users with the false promise of instant USDT (Tether) transactions. It did not impersonate a known brand or deploy a drainer kit but operated as a standalone scam to harvest credentials or sensitive information. As of the latest verification, usdtchecks.net has been taken offline, though its prior activity classified it as an elevated-risk phishing threat.
Technical indicators confirm the domain's malicious intent. usdtchecks.net was flagged by 2 of 95 VirusTotal security vendors, including Gridinsoft and SOCRadar, and appeared on 1 security blocklist (PhishDestroy). Registered through NameCheap, Inc. on February 21, 2026, the domain resolved to the IP address 172.67.170.116, hosted by Cloudflare, Inc. (AS13335) in the US. No SSL certificate was issued, and the observed page title was 'USDT CHECKS — Send & Receive Crypto Instantly'. Nameservers were love.ns.cloudflare.com and marty.ns.cloudflare.com, with an HTTP status of 200 during active operation.
Users who interacted with usdtchecks.net should assume their credentials or sensitive information may have been compromised. If login details were entered, change passwords immediately and enable two-factor authentication on all associated accounts. Monitor financial and crypto accounts for unauthorized transactions, and consider reporting the incident to platforms like the Anti-Phishing Working Group (APWG) at reportphishing@apwg.org or local cybercrime authorities. For crypto-related exposure, revoke any token approvals granted to unknown contracts and transfer funds to a new, secure wallet.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звіти
PD-20260211-9BCB8B Recipient: abuse@namecheap.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога