etehrscan[.]io
“Instant Cryptocurrency Exchange | Best Rates & Lowest Fees | ChangeNOW”
etehrscan.io — Nicht bestätigt. Markenidentität: Binance; Betrugstyp: Crypto Scam. Zusammenfassung der Beweislage: VirusTotal 2/91 (Chong Lua Dao, Gridinsoft); 1 external blocklist match (CryptoFirewall); PhishDestroy score 63/100.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
The domain etehrscan.io is a confirmed phishing site engaged in brand impersonation targeting cryptocurrency users. It mimics the Binance exchange to deceive victims into believing they are interacting with a legitimate platform, posing an elevated risk of credential theft and financial fraud. No cryptocurrency drainer kit was identified, but the site was actively used for cryptocurrency-related scams before being taken offline.
Technical indicators confirm the malicious nature of etehrscan.io. The domain was flagged by 1 of 95 VirusTotal security vendors, including Gridinsoft, which assigned a trust score of 0/100. It appears on 2 security blocklists, PhishDestroy and CryptoFirewall, and was not flagged by Google Safe Browsing. The domain was created on February 21, 2026, and resolves to the IP address 172.66.171.200, hosted on Cloudflare's network in the US. The SSL certificate is issued by server1.bitaffs.com, and the observed page title was 'Instant Cryptocurrency Exchange | Best Rates & Lowest Fees | ChangeNOW'. Scamadviser assigned a trust score of 12/100 to the domain.
Users who interacted with etehrscan.io should immediately change any passwords or credentials entered on the site and enable two-factor authentication on their accounts. If cryptocurrency transactions were attempted, revoke any token approvals and consider moving funds to a new wallet to prevent unauthorized access. Report the phishing domain to relevant authorities, such as the impersonated brand's security team, and submit the URL to platforms like Google Safe Browsing, PhishTank, or the Anti-Phishing Working Group to help prevent further victimization.
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Forensische Erkenntnisse
VirusTotal-Analyse
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt