cryptousawallet[.]com
cryptousawallet.com 网络钓鱼与安全检查
cryptousawallet.com — 内容不可用 (HTTP 502). 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 14/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); URLQuery 1 alert; 3 external blocklist matches (Polkadot, Enkrypt, Codeesura); PhishDestroy score 92/100. 注册商: BigRock Solutions.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
cryptousawallet.com was registered on 21 February 2026 through BigRock Solutions Ltd. The domain resolves to the AWS CloudFront address 18.165.140.39, which is geolocated to Finland. The hosting provider is Amazon Web Services, indicating a globally distributed CDN infrastructure that can mask the true origin of malicious payloads. The domain’s authoritative nameservers are listed as ns1.verification-hold.suspended-domain.com and ns2.verification-hold.suspended-, suggesting the registrar placed the domain in a verification‑hold state prior to takedown. As of the reporting date, the site is offline.
VirusTotal scans have flagged 14 of 93 security vendors as positive, confirming that a non‑trivial portion of the scanning community detects malicious activity associated with the domain. The domain is present on four independent security blocklists and has been explicitly blocked by PhishDestroy, Polkadot, Enkrypt, and Codeesura. AlienVault OTX includes the domain in a single threat‑intelligence pulse, further corroborating its association with illicit activity. The only classified threat category in the intelligence set is “Crypto Scam”, and the report’s risk level is high, identifying the domain as a crypto drainer.
No public page title or SSL certificate details are available, and the offline status prevents live content analysis; therefore, the precise mechanics of the drainer (e.g., whether it redirects to a malicious smart‑contract or harvests private keys) remain unknown. Defenders should immediately add cryptousawallet.com to URL filtering and DNS blocklists, enforce outbound traffic monitoring to the associated IP address 18.165.140.39, and watch for other domains hosted on the same AWS CloudFront edge nodes. Continuous hunting for similar registration patterns—BigRock registrar, verification‑hold nameservers, and rapid creation dates—can aid in early detection of future crypto‑drainer campaigns.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS0 Zero | cryptousawallet.com |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。