nft[.]fc-barcelona[.]media
“FC BARCELONA : NFT Masterpiece”
nft.fc-barcelona.media — 未验证. 品牌冒充:Scroll; 诈骗类型:Nft Scam. 证据摘要: VirusTotal 2/91 (CRDF, Gridinsoft); 1 external blocklist match (ScamSniffer); PhishDestroy score 58/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of the domain nft.fc-barcelona.media, observed on July 24, 2026, shows that the site was hosting an NFT‑related impersonation campaign targeting the brand “scroll”. The public page title “FC BARCELONA : NFT Masterpiece” suggests the attackers attempted to associate the FC Barcelona name with a fabricated NFT offering. The domain resolves to the IPv4 address 192.142.54.239, which is registered to Ultahost, Inc. in the Netherlands and belongs to ASN 214036. No TLS certificate is presented, indicating that the site operated over plain HTTP.
VirusTotal records indicate that 2 of 95 scanning engines flagged the domain, confirming the presence of malicious indicators. The infrastructure has been listed on two independent blocklists, PhishDestroy and ScamSniffer, and the Gridinsoft trust score is recorded as 0 out of 100, reinforcing the classification as a malicious resource. The domain is currently offline, and no authoritative nameserver information is available. The evidence does not include any additional payload details, command‑and‑control endpoints, or associated phishing kits, so the full scope of the campaign remains uncertain.
Defenders should continue to block the IPv4 address 192.142.54.239 and add nft.fc-barcelona.media to URL filtering policies. Monitoring of related subdomains and any future re‑hosting attempts is advised, as the threat actor may reuse the same hosting provider or ASN. Because the site lacked TLS, network‑level inspection of HTTP traffic can reveal any residual malicious redirects or downloads should the domain become active again. Organizations that reference the “scroll” brand or that have users interested in NFTs should treat any unsolicited communications referencing FC Barcelona NFTs as fraudulent and advise users to verify legitimacy through official channels.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。