bitgetwallet[.]capital
“下载 Bitget Wallet | 适用于iOS、安卓和谷歌浏览器 | Bitget Wallet”
The domain bitgetwallet.capital is currently resolved to the IPv6 address 2606:4700::6812:891, which belongs to AS13335 operated by Cloudflare, Inc. The hosting location is the United States. The domain is delegated to the authoritative nameservers a.share-dns.com and b.share-dns.net. Registration was performed through Gname.com Pte. Ltd., a registrar that frequently appears in abuse reports. The site is listed on a single security blocklist and is explicitly blocked by PhishDestroy, indicating that at least one defensive feed has identified it as malicious. No SSL certificate is present, and the site is reported as offline, meaning no HTTP response is currently reachable. Content analysis is limited to the page title returned by the DNS query, which reads “下载 Bitget Wallet | 适用于iOS、安卓和谷歌浏览器 | Bitget Wallet”.
The title is in Chinese and references a Bitget wallet download for iOS, Android, and Chrome, suggesting a crypto‑related lure. The intelligence tags the domain as a crypto scam that impersonates the Avalanche brand, confirming a brand‑impersonation motive. Detection services provide mixed signals. VirusTotal records two positive detections out of ninety‑five scanners, indicating that a minority of vendors have flagged the domain for malicious behavior. Gridinsoft assigns a trust score of 0 out of 100, and Scamadviser rates the site at 26 out of 100, both reflecting a very low credibility assessment.
The combination of a low trust score, the absence of TLS, and the brand‑impersonation claim strengthens the suspicion of fraudulent activity. Uncertainties remain because the site is offline and no payload, certificate, or network traffic samples are available for deeper forensic analysis. Defenders should therefore treat the domain as high‑risk until further evidence is gathered. Recommended actions include adding bitgetwallet.
Security Signals
Threat Response Pipeline
Public Blocklist Status
Stored Capture
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analysis
Archived Evidence
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive