tethercenter[.]xyz
“Secure USDT Payment Processing | Digital Payment Infrastructure & API”
tethercenter.xyz — Contenu indisponible. Type d'arnaque : Seed Phrase Theft. Résumé des preuves: VirusTotal 6/95 (ADMINUSLabs, alphaMountain.ai, Forcepoint ThreatSeeker, Fortinet, Seclookup); PhishDestroy score 68/100. Bureau d’enregistrement: Domain Admin.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
PhishDestroy identified tethercenter.xyz as a generic phishing domain targeting cryptocurrency users with a fake USDT payment processing interface. The site posed as a legitimate digital payment infrastructure provider, likely aimed at stealing wallet credentials or login details from unsuspecting victims. No specific brand impersonation or drainer kit was identified, but the domain's name and title clearly suggest an attempt to capitalize on Tether's brand recognition.
Technical indicators from the investigation reveal that tethercenter.xyz resolves to IP 108.138.85.10 and was created on June 24, 2025. VirusTotal shows 6 out of 95 security vendors flagging the domain as malicious, and it appears on one security blocklist. The SSL certificate was issued by Amazon (Amazon RSA 2048 M03), and the registrar is listed as Domain Admin. Google Safe Browsing status was not explicitly provided but the domain's current offline status suggests active monitoring.
As of the latest check, tethercenter.xyz has been taken offline, reducing immediate risk. However, organizations and individuals should remain vigilant, as similar domains may appear. PhishDestroy recommends blocking the domain at the network level, reviewing any credentials that may have been entered on the site, and educating users about phishing tactics that impersonate cryptocurrency payment services.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies · 4 identified
Amazon Web Services (AWS) is a comprehensive cloud services platform offering compute power, database storage, content delivery and other functionality.
aws.amazon.com Confiance à 100 %Amazon CloudFront is a fast content delivery network (CDN) service that securely delivers data, videos, applications, and APIs to customers globally with low latency, high transfer speeds.
aws.amazon.com Confiance à 100 %HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confiance à 100 %Analyse VirusTotal
Preuves archivées
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of tethercenter.xyz · checked Mar 2, 2026
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif