wallettest.live
“SEND USDT”
www.wallettest.live is a crypto drainer phishing site. It was flagged by 1 of 95 VirusTotal vendors and is now offline. Users should avoid interaction.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
ملخص الأدلة
PhishDestroy identifies www.wallettest.live as a confirmed crypto drainer phishing site. This domain was designed to steal cryptocurrency by tricking users into connecting their wallets under the guise of sending USDT. The domain is currently offline, but its threat remains relevant for awareness. No specific brand was impersonated, but the generic 'SEND USDT' page title indicates a broad crypto phishing campaign.
Technical analysis reveals that www.wallettest.live was registered through GoDaddy.com, LLC and resolved to IP address 77.245.76.110. The SSL certificate was issued by Let's Encrypt (R12), a common choice for phishing sites. VirusTotal flagged the domain with 1 out of 95 security vendors marking it as malicious. It appears on one security blocklist, indicating a low but present risk. The domain was taken offline after detection, but such sites often reappear under new names.
Given the elevated risk level associated with crypto drainers, users should never connect their wallets to unknown or unsolicited sites. PhishDestroy strongly recommends avoiding any interaction with www.wallettest.live or similar domains. Always verify URLs carefully, enable two-factor authentication, and use hardware wallets for storing significant crypto assets. If you have already connected your wallet, revoke permissions immediately and transfer funds to a secure wallet.
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | www.wallettest.live |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
Evasion analysis
Cloaking & traffic-distribution check
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
- Stored cloaking flag
- Not observed
- درجة الإخفاء
- 0/6
- Last cloaking scan
Scanner note: timeout: raw=timeout; http=0; via=http_proxy; error=HTTPConnectionPool(host='173.211.68.119', port=6401): Read timed out. (read timeout=7)
لقطة محفوظة · 3 sources
معلومات النطاق
التفاصيل التقنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
بلاغات المجتمع
أبلغ عنه عضو واحد في المجتمع؛ شوهد أول مرة في 30/05/2026
- البلاغات المحفوظة
- 1
- عناوين URL الفريدة المبلغ عنها
- 1
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب