sachicoin[.]net
“Nur einen Moment…”
Résumé des preuves
This domain, sachicoin.net, is identified as a cryptocurrency credential theft operation targeting users through deceptive wallet interfaces. Analysis indicates no direct brand impersonation, but the domain mimics legitimate crypto services to harvest private keys, seed phrases, or wallet credentials. The page title 'Nur einen Moment…' suggests a German-language audience or a localized phishing template, though no specific cryptocurrency project or exchange is directly spoofed in the available data. Infrastructure analysis reveals the domain was registered on November 4, 2025, through NiceNIC International Group Co., Limited, a registrar frequently associated with malicious registrations. It resolves to the IP address 104.21.49.81, a Cloudflare proxy endpoint commonly used to obscure hosting origins. At the time of assessment, VirusTotal detection shows 3 out of 95 security vendors flagging the domain as malicious. The domain appears on one security blocklist and is blocked by at least one threat intelligence feed. Gridinsoft assigns a trust score of 0 out of 100, further corroborating its malicious classification. As of the latest verification, sachicoin.net has been taken offline, likely due to hosting provider or registrar enforcement actions. However, the underlying infrastructure remains a residual risk, as threat actors may re-deploy the domain or migrate to newly registered lookalike domains. Users who interacted with the site prior to takedown should immediately revoke wallet permissions, transfer assets to a new wallet, and monitor for unauthorized transactions. Security teams are advised to add the domain and associated IP to blocklists, and to conduct retroactive scans for any prior exposure within their networks.
Data Coverage
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 12/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
-
VirusTotal
1 → 3
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse forensique
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif