qbankwallet[.]com
“Q-Bank Web Wallet”
Résumé des preuves
qbankwallet.com was registered on August 06, 2025 through MAT BAO CORPORATION. The domain resolves to the Cloudflare address 172.67.137.141, advertised as belonging to ASN 13335 (Cloudflare, Inc.) and located in the United States. The TLS certificate, identified as WE1, is present but offers no additional trust signals. The site presented the page title “Q‑Bank Web Wallet” and was categorized as a crypto drainer, a variant of crypto‑related scams that aim to steal digital assets.
Independent analysis on VirusTotal recorded three positive detections out of ninety‑three scanners, indicating that at least a minority of security engines flagged the domain as malicious. Reputation services also rate the domain poorly: Gridinsoft assigned a score of 0 out of 100 and Scamadviser reported a trust score of 26 out of 100. The domain appears on four known blocklists, specifically PhishDestroy, Polkadot, Enkrypt and Codeesura, and is listed on four additional security blocklists. All monitoring services currently report the site as offline, confirming that the malicious infrastructure has been taken down or is otherwise inaccessible.
Defenders should continue to block any network traffic to the IP address 172.67.137.141 and add the domain to internal blacklists, as the observed indicators suggest an active threat vector that may be replicated by other domains using the same hosting provider. Ongoing vigilance is advised, particularly for users who may have previously interacted with the site, because credential or wallet information harvested before takedown could be leveraged in secondary attacks. The elevated risk rating reflects the combination of low trust scores, confirmed blocklist listings, and the presence of detection alerts, and should be considered when shaping endpoint and email protection policies.
Data Coverage
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 12/08/2026
7 sources externes surveillées Aucune correspondance
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse forensique
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif