Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
changeily[.]at
“Changelly Crypto Exchange | Instant BTC to USDT Swap | changeily.at”
Résumé des preuves
This domain, changeily.at, is identified as a high-risk generic phishing site impersonating the Changelly cryptocurrency exchange platform. Analysis indicates the domain is designed to deceive users into believing they are accessing a legitimate instant swap service for BTC to USDT conversions. The page title, 'Changelly Crypto Exchange | Instant BTC to USDT Swap | changeily.at,' explicitly mimics the branding of the authentic Changelly service, suggesting the presence of a credential-harvesting and crypto-draining kit targeting unsuspecting victims. Infrastructure analysis reveals multiple technical indicators of malicious activity. The domain was registered on February 21, 2024, through Hosting Concepts B.V. d/b/a Registrar.eu and resolves to the IP address 158.94.209.135. Detection metrics show that 14 out of 95 security vendors on VirusTotal flag this domain as malicious, while it appears on three distinct security blocklists. The SSL certificate is issued under the 'antiddos/flowproxy' label, a common obfuscation technique used to mask malicious infrastructure. Additionally, the domain is blocked by multiple security mechanisms, including browser-based transaction validators and phishing detection systems. As of the latest assessment, changeily.at has been taken offline, likely in response to security vendor interventions and blocklist inclusions. However, the domain's infrastructure remains registered, posing a residual risk of reactivation or migration to alternative domains. Users who interacted with this domain are advised to revoke any connected wallet permissions, rotate credentials, and monitor for unauthorized transactions. The use of Nginx as the underlying web server technology further suggests the deployment of a pre-configured phishing kit, increasing the likelihood of rapid redeployment under a new domain.
Instantané des preuves transmises
- Envoyé
- Entrées du registre
- 1
- ID du dossier
PD-20260219-E4CDB2- Artefact PDF
- Preuve PDF
Texte intégral des preuves
Acceptable Use Policy (AUP): The domain changeily.at is being utilized for phishing activities, which constitutes a clear violation of your AUP prohibiting illegal activities and fraud.
Terms of Service (TOS): The ongoing use of this domain for deceptive practices warrants immediate suspension or termination of services as outlined in your TOS, which reserves the right to act against such violations.
Applicable Laws (UNITED KINGDOM OF GREAT BRITAIN AND NORTHERN IRELAND (THE)):
Computer Misuse Act 1990: This law criminalizes unauthorized access to computer systems, including phishing schemes that deceive individuals into providing sensitive information.
Fraud Act 2006: This legislation addresses various forms of fraud, including deception by means of phishing, which is directly applicable to the activities associated with changeily.at.
Regulation (EU) 2016/679 (GDPR): The misuse of personal data through phishing attacks violates data protection principles, exposing individuals to significant harm.
Regulatory Note: Failure to act on this matter may result in regulatory scrutiny and potential legal repercussions for non-compliance with both your policies and applicable laws.
Data Coverage
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 12/08/2026
8 sources externes surveillées Aucune correspondance
Chronologie de détection
-
VirusTotal
6 → 14
Signalements communautaires
Signalé par 1 membre de la communauté ; première observation le 19/02/2026
- Signalements enregistrés
- 1
- URL signalées uniques
- 1
Renseignement communautaire
1 signalement communautaire
CatégoriePHISHING
Detection Summary The Anti-Phishing Volunteers & Associates Security Incident Response System has flagged this as a domain threat, classified as phishing attack against Changelly. Threat detected at 2026-03-29T17:25:17.681Z.
Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of changeily.at · checked Jun 26, 2026
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif