Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
crowntrustholdings[.]com
“Home - Crown Trust Holdings Online Banking”
Quan sát đã lưu
Độ tương phản tiêu đề quan sát được
Tóm tắt bằng chứng
Analysis of the domain crowntrustholdings.com indicates it is actively engaged in banking phishing operations, specifically targeting users of Crown Trust Holdings Online Banking. The domain was registered on February 21, 2026, through the registrar Cosmotown, Inc., and currently resolves to the IP address 161.129.70.235, hosted on AS19318 (Interserver, Inc.) in the United States. The domain's nameservers, vivid1.gfireservers.in and vivid2.gfireservers.in, suggest a hosting infrastructure that may be reused across multiple phishing campaigns. The site returns an HTTP 200 status, confirming it is operational, and presents a page titled 'Home - Crown Trust Holdings Online Banking,' which aligns with the reported scam type of banking phishing. Detection data reveals that 11 of 93 security vendors on VirusTotal have flagged this domain as malicious, and it appears on at least one security blocklist, specifically PhishDestroy.
The domain has been assigned a Gridinsoft trust score of 0 out of 100, further indicating its high-risk nature. The SSL certificate is issued by Let's Encrypt (R13), a common choice for both legitimate and malicious sites due to its accessibility and short validity periods. Technologies detected on the domain include Tailwind CSS, LiteSpeed, Alpine.js, Smartsupp, jsDelivr, GetButton, and HTTP/3, which are not inherently malicious but are frequently leveraged in phishing kits to create convincing replicas of legitimate banking portals. Defenders should prioritize blocking this domain at the DNS and network levels, particularly in environments where Crown Trust Holdings is a known financial service provider.
The use of Let's Encrypt SSL certificates and hosting on a U.S.-based provider does not mitigate the risk, as these are standard tactics to evade initial suspicion.
Ảnh chụp bằng chứng đã gửi
- Đã gửi
- Bản ghi sổ cái
- 1
- Mã vụ việc
PD-20260219-43AC97- Tiêu đề trang đã chụp
- Home - Crown Trust Holdings Online Banking
- Tệp PDF
- Bằng chứng PDF
Cơ sở pháp lý
Toàn văn bằng chứng
Acceptable Use Policy (AUP): The domain crowntrustholdings.com is engaged in phishing activities, which constitute a clear violation of your AUP prohibiting illegal activities and fraud.
Terms of Service (TOS): The registrar reserves the right to suspend or terminate services for violations, and the ongoing use of this domain for deceptive practices warrants immediate action under this provision.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. federal law prohibits unauthorized access to computers and networks, which is applicable as phishing schemes often involve unauthorized access to sensitive information.
Wire Fraud Statute (18 U.S.C. § 1343): This law criminalizes schemes to defraud individuals or entities via electronic communications, directly applicable to the activities associated with this domain.
CAN-SPAM Act (15 U.S.C. § 7701): This act regulates commercial email and prohibits misleading headers and deceptive subject lines, which are often utilized in phishing attempts.
Regulatory Note: Failure to act on this report may expose your organization to liability under applicable laws and regulations. Immediate suspension of the domain is advised to mitigate potential legal repercussions.
Data Coverage
Tín hiệu bảo mật
Pipeline ứng phó với các mối đe dọa
Phạm vi danh sách chặn
10 nguồn ngoài được giám sát · ảnh chụp lưu ngày 11/08/2026
10 nguồn ngoài được giám sát Không trùng khớp
Bản chụp đã lưu
Thông tin về tên miền
Chi tiết kỹ thuậtDNS, tên TLS và mốc thời gian
ICANN OVERSIGHT
Bối cảnh công nhận và RAA
Bối cảnh công nhận và RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Phân tích của VirusTotal
Phân tích hiệu suất trang
Google PageSpeed Insights — mobile performance audit of crowntrustholdings.com · checked Mar 6, 2026
Bạn có bị ảnh hưởng bởi trang web này không?
Nếu bạn đã nhập thông tin xác thực tài khoản, thông tin cá nhân hoặc thông tin thanh toán hoặc đã tải xuống tệp từ miền này, hãy hành động ngay lập tức. Dưới đây là các nguồn lực giúp bạn báo cáo vụ việc và bảo vệ chính mình.
Hãy báo cáo với chính quyền địa phương
Chọn quốc gia của bạn để nhận liên hệ tội phạm mạng chính thức hoặc soạn thảo đơn khiếu nại →.
Kiểm tra bất kỳ tên miền nào
Phân tích mối đe dọa bằng cách sử dụng danh sách chặn được lưu trữ, WHOIS, DNS và bằng chứng quét công khai
Quét ngayBáo cáo lừa đảo qua email
Hãy gửi các tên miền đáng ngờ đến cơ sở dữ liệu mối đe dọa của chúng tôi — để bảo vệ cộng đồng
Báo cáoDòng tin tức về các mối đe dọa thời gian thực
Các báo cáo lừa đảo gần đây và những thay đổi về tính khả dụng được quan sát thấy
Theo dõiLuôn cập nhật thông tin, luôn an toàn
Theo dõi các mối đe dọa đang diễn ra hoặc phản đối danh sách này nếu bạn cho rằng đây là kết quả báo động sai