Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@namecheap.com.
The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
usdtzap[.]usdtzed[.]cc
“YourCard - Virtual Crypto Debit Card | No KYC Needed”
usdtzap.usdtzed.cc — 未验证. 证据摘要: VirusTotal 2/93 (Forcepoint ThreatSeeker, SOCRadar); CF Radar malicious; PhishDestroy score 71/100. 注册商: NameCheap.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of the domain usdtzap.usdtzed.cc indicates a phishing operation targeting users of virtual crypto debit card services. The domain, registered on February 21, 2026, through NameCheap, Inc., resolves to IP address 159.198.41.94, hosted on AS22612 (Namecheap, Inc.) in the United States. The page title, 'YourCard - Virtual Crypto Debit Card | No KYC Needed,' suggests an attempt to lure victims with promises of anonymous crypto financial services, a common tactic in phishing campaigns exploiting cryptocurrency trends. Infrastructure analysis reveals the use of Nginx as the web server, Cloudflare for CDN services, and cdnjs for JavaScript library delivery, alongside HTTP/3 protocol support.
The domain is currently offline, returning an HTTP 404 status, and its SSL certificate is issued by Let's Encrypt (R12). Detection data is limited but notable: two out of 93 security vendors on VirusTotal flagged the domain, and it appears on one security blocklist, specifically PhishDestroy. The Gridinsoft trust score for this domain is 0/100, further indicating its malicious nature. Nameservers for the domain are dns1.registrar-servers.com and dns2.registrar-servers.com, consistent with NameCheap's infrastructure.
While the exact phishing kit or payload remains unconfirmed due to the domain's current offline status, the combination of a low detection count, recent registration, and targeted page title aligns with typical phishing domain characteristics. Defenders should treat this domain as a confirmed phishing threat, particularly for users engaging with crypto-related financial services. Monitoring for re-activation or similar domains under the same infrastructure is recommended.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 4 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 置信度 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 置信度 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 置信度 100%VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of usdtzap.usdtzed.cc · checked Mar 2, 2026
证据与外部报告
PD-20260203-3FC8FD Recipient: abuse@namecheap.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。