Vai al rapporto di sicurezza
⚠️
Questo dominio è stato segnalato come dannoso
Motori di sicurezza che segnalano un rilevamento: 2. Prestare estrema cautela: non inserire credenziali o informazioni personali.
Sicurezza del dominio e intelligence sulle minacce

aml-c[.]net

Verifica phishing e sicurezza per aml-c.net

“AML Check”

Verdetto di minaccia Alto Punteggio delle prove 56/100
Disponibilità Non verificato La raggiungibilità attuale non è verificata
Segnali di rischio
Rilevamenti VirusTotal: 2/94 Spamhaus DBL: DBL_PHISH URLQuery threat systems: 2 alerts Tipo di truffa: AML Scam
2/94 VT URLQuery: 2 threat alerts 28/03/2026 Non disponibile dal 23/04/2026 Truffa tramite airdrop Truffa AML CDN
Riepilogo del rapporto

aml-c.net — Non verificato (HTTP 409). Tipo di truffa: Aml Scam. Riepilogo delle prove: VirusTotal 2/94 (alphaMountain.ai, Fortinet); URLQuery 2 alerts; Spamhaus DBL_PHISH; PhishDestroy score 56/100. Registrar: Tucows.

L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.

Riepilogo delle prove
ALTO
Rif.
53A9D6BA
Punteggio
56/100

PhishDestroy identifies aml-c.net as an active crypto drainer domain posing as a legitimate service to steal cryptocurrency from unwary users. The domain is designed to impersonate legitimate platforms by harvesting wallet credentials and draining funds through unauthorized transactions. Technical analysis indicates the domain is weaponized to trick users into connecting their wallets or entering private keys under false pretenses, resulting in irreversible asset loss. This domain was flagged as a generic phishing site on March 26, 2026, just days after registration, suggesting a fast-turnaround malicious campaign likely leveraging fresh infrastructure to evade detection. This domain resolves to IP address 188.114.96.3 and is registered through TUCOWS.COM, CO., a common registrar used by malicious actors to quickly deploy malicious domains. VirusTotal currently shows 2 out of 95 detection engines flagging the domain, highlighting how new and undetected this threat remains despite active malicious behavior. The domain uses a Let's Encrypt SSL certificate, which provides a false sense of legitimacy to users. Given its recent creation and lack of blocklist presence, this domain represents a high-risk threat with low visibility across security platforms. Users who have visited aml-c.net or entered any wallet-related information should immediately disconnect their wallet from the site, revoke any connected permissions through their wallet interface, and transfer remaining funds to a secure, offline wallet. Scan devices for malware using reputable antivirus tools, enable multi-factor authentication where possible, and avoid reusing passwords. Report the domain to PhishDestroy and monitor wallet transactions for suspicious activity. If funds were stolen, file a report with local cybercrime units and blockchain forensic services. Always verify domains and URLs independently before engaging with cryptocurrency platforms.

VirusTotal
VirusTotal
2 det.
URLQuery
URLQuery
2 threat alerts
URLScan
URLScan
Certificato TLS
Let's Encrypt
Età
4 mo
Stato osservato
Non verificato 409
PhishDestroy
Elenco da eliminare
In elenco
Copertura dei dati VirusTotal 2 / 94 URLQuery 2 threat-system alerts PhishStats checked — no match recorded OTX no community references CF Radar scan completed URLScan capture rapporto memorizzato URLScan verdict Analisi completata Blocchi DNS 11 verificato — nessun blocco TLS valid certificate, 88d WHOIS 4 mo old Screenshot 2 captures · 2 sources Catena di reindirizzamenti non sondato
Informazioni sulla sicurezza di rete
Threat Detection Systems 2 alerts
Detection System Indicator Verdict Alert
DNS4EU aml-c.net malicious Sinkholed
Hagezi Threat Feed aml-c.net malicious Sinkholed

Pipeline di risposta alle minacce

Scoperta
Checks
Reports
Disponibilità
9/11

Stato della lista di blocco pubblica

Acquisizione salvata

Titolo della pagina
AML Check
Certificato TLS
Valid transport encryption · Emesso da Let's Encrypt · valid for 88 days

Analisi dei domini

Dominio
URLScan Verdict Analisi completata score 0 report ↗
Server / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden La reputazione Edge-IP non è attribuita a questo dominio.
Registrar Tucows CA(CA)
Indirizzo IP 188.114.96.3 CDN
PosizioneCA Toronto, CA
ReteAS13335 · CloudFlare, Inc.
L'IP di origine è nascosto dietro un proxy CDN. I risultati dell'IP inverso per l'indirizzo edge contengono tenant non correlati; la ricerca dell'origine richiede DNS passivo o dati di trasparenza del certificato.
RegistrazioneCreato 28/03/2026 (133d)
Stato HTTP409 Error
Elapsed Since First Report 26 days
Cosa conteggiamo Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: Non verificato.
Cosa contiene ogni rapporto I record archiviati dei report in uscita possono fare riferimento a prove disponibili in quel momento, come verdetti dei fornitori, dati di registrazione, dettagli di hosting, classificazioni o screenshot. Questa pagina non deduce l'esatto carico utile consegnato, la ricevuta, la conferma o l'azione da parte di un destinatario.
Dettagli tecniciDNS, SAN SSL, timestamp
Rilevato per la prima volta28/03/2026
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttps://aml-c.net/checking
Nameserverlana.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 26/03/2026scanned 28/03/2026
ICANN OVERSIGHT

Accreditamento e contesto RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Nulla viene inviato automaticamente.
Tecnologie · 8 identified
Node.js
Programming languages

JavaScript runtime built on Chrome V8 engine for server-side development.

React
JavaScript frameworks

JavaScript library for building user interfaces with component-based architecture.

V
Vue.js
JavaScript frameworks

Progressive JavaScript framework for building user interfaces.

Next.js
JavaScript frameworks SSR

React framework for production with hybrid static and server rendering.

Cloudflare Browser Insights
Analytics RUM

Performance monitoring tool that measures website speed from real users.

www.cloudflare.com
Cloudflare
CDN

Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.

www.cloudflare.com
Webpack
Build tools

Module bundler for modern JavaScript applications.

HTTP/3
Miscellaneous

Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.

Detected via Cloudflare Radar · Wappalyzer engine
Segnala questo dominio Invia le prove e contribuisci a proteggere gli altri

Analisi di VirusTotal

2 / I fornitori di sicurezza 94 hanno contrassegnato questo dominio
View on VT
Last analyzed
alphaMountain.ai
Fortinet
Analisi delle prestazioni del sito

Google PageSpeed Insights — mobile performance audit of aml-c.net · checked Mar 28, 2026

84
Needs Work
Performance
FCP
1.35s
First Contentful Paint
LCP
4.53s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
2.39s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

Dati e relazioni esterne

Questo sito ti ha influenzato in qualche modo?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.

Europol
Trova il canale di segnalazione ufficiale per il tuo paese dell'UE
National police directory
Attenzione ai truffatori che promettono il recupero dei fondi! I criminali possono contattare nuovamente le vittime fingendo di essere investigatori, avvocati o agenti di recupero. Non pagare commissioni anticipate né condividere credenziali. Scopri di più sulle frodi relative ai sussidi di recupero →

Segnalalo alle autorità locali

Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.

Elenco di 97 paesi
Bozza assistita dall'intelligenza artificiale: i dettagli dell'incidente vengono elaborati dal fornitore di intelligenza artificiale Controllalo e invialo tu stesso

Verifica qualsiasi dominio

Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica

Scansiona ora

Segnala un tentativo di phishing

Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità

Segnala

Feed in tempo reale sulle minacce

Segnalazioni recenti di phishing e modifiche osservate della disponibilità

Monitora

Rimani informato, rimani al sicuro

Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo

Feed in tempo reale sulle minacce Contesta questo annuncio
HTML · IFRAME

Incorpora questo rapporto

Condividi queste informazioni sulle minacce sul tuo sito web o sul tuo blog

embed.html
<iframe
  src="https://phishdestroy.io/it/embed/domain/aml-c.net"
  title="PhishDestroy threat report for aml-c.net"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Una lettera di ringraziamento molto sincera

Generatore di bozze satiriche

Destinatario
Contesto delle tariffe

Bozza satirica. Gli importi delle tariffe sono stime; non si afferma che siano attribuibili esattamente a questo dominio.