Durchsuchen Sie die erfassten Domains und überprüfen Sie gespeicherte Beweismittel, Erkennungen sowie die aktuell beobachtete Verfügbarkeit.

0
Gesamtzahl der erfassten Fälle
0
VT erkannt
0
Zuletzt aktiv gesehen
0
Bei der letzten Überprüfung nicht verfügbar
0
VT Ausstehend
Fake Token-Vorverkauf
HOCH THREAT

Understanding and Mitigating Fake Token-Vorverkauf Threats

Fake Token-Vorverkauf scams are a prevalent threat with 33 domains detected by PhishDestroy, 13 of which are currently active. Top TLDs include .com, .xyz, and .co.

230
Domains Detected
HOCH
Threat Level

How This Attack Works

Fake Token-Vorverkauf scams trick victims into believing they are investing in legitimate cryptocurrency projects. Here's how the scam typically unfolds:

STEP 1
Create Fake Websites
Scammers set up realistic-looking websites mimicking legitimate token presale portals.
STEP 2
Promote Presale on Social Media
Using social media and fake endorsements, scammers attract potential investors.
STEP 3
Collect Cryptocurrency
Victims are prompted to send cryptocurrency to a specified address under the guise of buying tokens.
STEP 4
Disappear with Funds
Once funds are collected, scammers shut down the site and disappear, leaving victims without recourse.

Technical Analysis

Fake Token-Vorverkauf scams often leverage phishing tactics combined with cryptocurrency-specific techniques. Attackers use homograph attacks to create URLs that closely resemble legitimate sites, often registered through top registrars like NICENIC INTERNATIONAL GROUP CO., LIMITED and PDR Ltd. d/b/a PublicDomainRegistry.com. They exploit the decentralized nature of blockchain networks, utilizing smart contracts that mimic legitimate presale contracts but are programmed to divert funds to the attacker’s wallet. The infrastructure often involves cloud-based hosting services to quickly deploy and dismantle sites, minimizing the chance of detection. HTML and JavaScript are commonly used to create dynamic, convincing interfaces that reassure potential victims of the site’s legitimacy. Additionally, attackers might deploy SEO techniques to improve the visibility of their fraudulent sites in search engine results, further increasing their reach.

Real Cases

CryptoX Presale Scam (2024)
$2 million stolen
A fake presale for a non-existent token, CryptoX, duped investors into contributing significant sums.
TokenLaunch Fraud (2023)
$1.5 million stolen
Victims were lured into a fake token launch with promises of high returns, only for the site to vanish post-collection.
QuickCoin Deception (2024)
$3 million stolen
Scammers created a sophisticated site mimicking a known exchange, leading to substantial financial losses.

How to Detect

Überprüfen for slight misspellings in domain names.
Look for inconsistent branding or layout compared to legitimate sites.
Be wary of unsolicited investment opportunities via social media.
Verify presale details on official project channels.
Beware of high-pressure tactics urging immediate investment.

How to Protect Yourself

1 Always verify URLs before entering personal information.
2 Use browser extensions to detect phishing attempts.
3 Consult official project websites or channels for presale information.
4 Enable two-factor authentication on cryptocurrency exchanges.
5 Report suspicious sites to authorities and platforms like PhishDestroy.

Frequently Asked Questions

What is Fake Token-Vorverkauf?
Fake Token-Vorverkauf is a scam where attackers create fraudulent cryptocurrency presale websites to deceive investors into sending funds for non-existent tokens.
How much money has been stolen through Fake Token-Vorverkauf?
Millions have been lost to Fake Token-Vorverkauf scams, with documented cases like CryptoX and QuickCoin resulting in over $6 million in damages.
How do I protect myself from Fake Token-Vorverkauf?
Verify presale details on official channels, scrutinize website URLs for discrepancies, and use security tools to detect phishing attempts.
What should I do if I'm a victim of Fake Token-Vorverkauf?
Report the scam to law enforcement, notify your cryptocurrency exchange, and share information with platforms like PhishDestroy to help prevent further incidents.
Data sourced from PhishDestroy threat intelligence database — 230 domains tracked for this threat type
Token-Vorverkauf — Threat Intelligence Kit High Threat
230
Domains
134
Alive
92
Taken Down
6.7
Avg VT
58.3%
Alive Rate
90%
Detected
Since Jul 2025 114 domains with VT ≥ 5
Fake Token-Vorverkauf 230 domains
Screenshot of ruviai.info
ruviai.info
1 VTLiveAngel Drainerethereum
Screenshot of ruviai.info
ruviai.info
Screenshot of syneris.tech
syneris.tech
1 VTLive
Screenshot of syneris.tech
syneris.tech
Screenshot of uniontoken.sale
uniontoken.sale
1 VTUnknownacross
Screenshot of uniontoken.sale
uniontoken.sale
Screenshot of unstaked-net.web.app
unstaked-net.web.app
1 VTUnknown
Screenshot of unstaked-net.web.app
unstaked-net.web.app
Screenshot of velltoken.xyz
velltoken.xyz
1 VTUnknownOKX
Screenshot of velltoken.xyz
velltoken.xyz
Screenshot of wallstreetpepe-online-d3n.pages.dev
wallstreetpepe-online-d3n.pages.dev
1 VTLive
Screenshot of wallstreetpepe-online-d3n.pages.dev
wallstreetpepe-online-d3n.pages.dev
Screenshot of xaifox-fxempire.com
xaifox-fxempire.com
1 VTLive
Screenshot of xaifox-fxempire.com
xaifox-fxempire.com
Screenshot of aaasz.pages.dev
aaasz.pages.dev
Live
Screenshot of aaasz.pages.dev
aaasz.pages.dev
Screenshot of bithyper.pages.dev
bithyper.pages.dev
Unknown
Screenshot of bithyper.pages.dev
bithyper.pages.dev
Screenshot of bl0ckdag.network
bl0ckdag.network
Live
Screenshot of bl0ckdag.network
bl0ckdag.network
Screenshot of blazpay.co
blazpay.co
LiveAngel Draineracross
Screenshot of blazpay.co
blazpay.co
Screenshot of blockdag-network-en.web.app
blockdag-network-en.web.app
UnknownMissbrauch von Wallet Connectacross
Screenshot of blockdag-network-en.web.app
blockdag-network-en.web.app
Screenshot of btchyperapp.pages.dev
btchyperapp.pages.dev
LiveMetaMask
Screenshot of btchyperapp.pages.dev
btchyperapp.pages.dev
Screenshot of claimflockerztoken.pages.dev
claimflockerztoken.pages.dev
UnknownOKX
Screenshot of claimflockerztoken.pages.dev
claimflockerztoken.pages.dev
Screenshot of claimsflockerz.pages.dev
claimsflockerz.pages.dev
Live
Screenshot of claimsflockerz.pages.dev
claimsflockerz.pages.dev
Screenshot of demo-presale-c24.pages.dev
demo-presale-c24.pages.dev
Live
Screenshot of demo-presale-c24.pages.dev
demo-presale-c24.pages.dev
Screenshot of digitoad-dapp.pages.dev
digitoad-dapp.pages.dev
Live
Screenshot of digitoad-dapp.pages.dev
digitoad-dapp.pages.dev
Screenshot of flockerz-dh1.pages.dev
flockerz-dh1.pages.dev
Live
Screenshot of flockerz-dh1.pages.dev
flockerz-dh1.pages.dev
hotdeal.com
LiveAngel Drainer
Screenshot of kadven.io
kadven.io
Livebinance
Screenshot of kadven.io
kadven.io
Screenshot of llttlepepe.com
llttlepepe.com
LiveAngel Drainer
Screenshot of llttlepepe.com
llttlepepe.com
Screenshot of monoprotocol.info
monoprotocol.info
LiveAngel Draineracross
Screenshot of monoprotocol.info
monoprotocol.info
Screenshot of pexebel.us
pexebel.us
LiveAngel Draineracross
Screenshot of pexebel.us
pexebel.us
Screenshot of snorterstoken.live
snorterstoken.live
LiveAngel Drainerdextools
Screenshot of snorterstoken.live
snorterstoken.live
solanex-claim.com
Live
Screenshot of solaxy-sol.pages.dev
solaxy-sol.pages.dev
Live
Screenshot of solaxy-sol.pages.dev
solaxy-sol.pages.dev
Screenshot of subbdtoken.wiki
subbdtoken.wiki
LiveAngel Drainer
Screenshot of subbdtoken.wiki
subbdtoken.wiki
Screenshot of token6900-coin.web.app
token6900-coin.web.app
Unknown
Screenshot of token6900-coin.web.app
token6900-coin.web.app
Screenshot of unstaked-website-2.pages.dev
unstaked-website-2.pages.dev
Live
Screenshot of unstaked-website-2.pages.dev
unstaked-website-2.pages.dev
Screenshot of xa60zlaunch.com
xa60zlaunch.com
LiveEthereum
Screenshot of xa60zlaunch.com
xa60zlaunch.com
« Prev 1 2 3 Page 3 of 3

Pipeline zur Reaktion auf Sicherheitsbedrohungen

How every domain in this hub is verified and how confirmed threats are neutralized. Full pipeline visualization →

Threat Intelligence Checks— every domain is scanned & cross-checked against:
urlscan.ioScreenshot · DOM · HTTPVirusTotal90+ AV enginesGoogle Safe BrowsingTransparency ReportCloudflare RadarDNS · certs · categoriesAlienVault OTXThreat-intel pulsesWayback MachineHistorical evidenceabuse.ch ThreatFoxIOC correlationcrt.shCertificate TransparencyDNS Security FiltersQuad9 · AdGuard · CleanBrowsingWeb-ÜberprüfenFull surface scan
Global Vendor Sync— confirmed detections are pushed to 29 partners:
GoogleSafe BrowsingGoogleWeb Risk APIMicrosoftSmartScreenVirusTotalDetection feedCloudflareRadar / 1.1.1.1YandexSafe BrowsingURLScan.ioPublic scanESETWebGuardBitdefenderThreat exchangeNortonSafe WebSymantecSiteReviewAviraCloud detectionAvast / AVGWeb ShieldKasperskyOpenTIPDr.WebOnline scannerNetcraftAbschaltung APIPhishTankVerified voteAPWG eCXBulk feedPhishStatsOpen feedPhish.ReportHosting abuseSpamhausDBL feedPolySwarmMarketplaceCheckPhishBolster scanQutteraMalware scanURLquerySandboxCriminal IPAsset intelCRDFThreat CenterScamadviserTrust scoreMyWOTWeb of Trust

Links auf dieser Website