# betro.cc — MALICIOUS > betro.cc is a phishing domain flagged by 5/95 VirusTotal vendors. This site poses as a crypto drainer targeting users with fake reward schemes. ## Summary betro.cc is an active phishing domain (generic_phishing) identified by PhishDestroy. This domain mimics legitimate crypto services to deploy drainer kits, specifically targeting cryptocurrency users with fake reward offers. No specific brand or drainer kit is confirmed in available intelligence, but its infrastructure aligns with common phishing-as-a-service operations. This domain exhibits the following technical indicators: It has a VirusTotal detection score of 5/95 security vendors (elevated risk), uses an SSL certificate issued by Let’s Encrypt, and is blocked by the Hagezi blocklist. The domain is registered with an unspecified registrar, its creation date is not disclosed in the data provided, and its Google Safe Browsing (GSB) status remains unconfirmed. It appears on 1 security blocklist, indicating limited but confirmed malicious activity. As of the latest analysis, betro.cc remains an active threat with elevated risk. No takedown actions have been confirmed, though it is blocked by at least one security vendor (Hagezi). Users should avoid this domain entirely, as it poses a high risk of credential theft or cryptocurrency loss. Remaining risk is elevated due to its SSL certificate and blocklist presence, suggesting ongoing malicious operations. ## Threat Details - Verdict: MALICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence ## Detection Status - VirusTotal: 5 vendors flagged - Google Safe Browsing: clean - Blocklists: 1 hits Lists: ["Hagezi"] ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/ebc80dfa-4991-41e2-ae02-bb280a91e1a6 - PhishDestroy: https://phishdestroy.io/domain/betro.cc/ - LLM endpoint: https://phishdestroy.io/domain/betro.cc/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/betro.cc/ Last updated: 2026-04-13