thedarkvr[.]su
Análisis de phishing y seguridad de thedarkvr.su
thedarkvr.su — Contenido no disponible (HTTP 502). Tipo de estafa: Crypto Drainer. Resumen de las pruebas: VT 0/91; URLQuery 0; URLScan no malicious verdict; GSB no flag; BL 0; PD 48/100. Registrador: REGRU-SU.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
PhishDestroy identifies thedarkvr.su as an active crypto drainer phishing domain currently under investigation by the anti-phishing unit. The site mimics legitimate virtual reality platforms to trick users into connecting crypto wallets and draining funds. This domain is deployed with infrastructure designed to harvest private keys and authorization tokens under the guise of ‘exclusive VR content access’. thedarkvr.su was registered on October 08, 2025 through REGRU-SU and resolves to IP 188.114.96.3. As of the latest scan, the domain remains unflagged on VirusTotal with 0 detections out of 95 participating vendors. The site holds a valid SSL certificate issued by Google Trust Services, which may be leveraged to increase user trust. Despite its clean detection score, the domain’s recent creation date, absence from public blocklists, and SSL trust score suggest a newly launched campaign with low detection latency. Behavioral analysis indicates redirection pathways consistent with crypto drainer toolkits, including prompt wallet connection requests upon page load. Users are strongly advised to avoid interacting with thedarkvr.su and to report any encounters via PhishDestroy’s verification portal. Given the domain’s active status, low detection coverage, and the presence of a trusted SSL certificate, the risk of exposure to wallet compromise remains elevated. Immediate actions include blocking the domain at the network level, scanning endpoints for unauthorized crypto wallet connections, and validating all URLs before engagement. PhishDestroy continues to monitor this domain and will update its status as new intelligence becomes available.
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Tecnologías · 4 identified
Google Analytics is a free web analytics service that tracks and reports website traffic.
google.com 100 % de confianzaCloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100 % de confianzaCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100 % de confianzaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100 % de confianzaAnálisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of thedarkvr.su · checked May 2, 2026
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Acerca de este informe: thedarkvr.su
Este informe presenta la última evidencia almacenada disponible para PhishDestroy. Las marcas de tiempo de origen se muestran cuando están disponibles; La disponibilidad y los veredictos de los proveedores pueden cambiar después de la recolección.
PhishDestroy enumera a thedarkvr.su como sospechoso. Fue verificado por motores de seguridad 91; Los veredictos automatizados pueden cambiar. El seguimiento continúa.
Si cree que esta lista es inexacta, presentar una apelación. Para conocer nuestra metodología, visita el Página de preguntas frecuentes.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.