MALICIOUS — CRITICAL
binnance[.]cam
This domain, binnance.cam, represents an elevated-risk brand impersonation threat designed to deceive users of the Binance cryptocurrency exchange platform.
- VirusTotal
- 3/91
- Blocklists
- No stored match
- Disponibilità
- Contenuto non disponibile · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
binnance.cam — Contenuto non disponibile (HTTP 502). Simulazione del marchio: Binance; Tipo di truffa: Brand Impersonation. Riepilogo delle prove: VirusTotal 3/91 (alphaMountain.ai, Gridinsoft, SOCRadar); PhishDestroy score 71/100. Registrar: Dynadot.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Evidence Analysis
This domain, binnance.cam, represents an elevated-risk brand impersonation threat designed to deceive users of the Binance cryptocurrency exchange platform. The site masquerades as a legitimate gateway to decentralized finance (DeFi) services, as indicated by its page title, 'Axiom — The Gateway to DeFi,' which attempts to exploit trust in both Binance and emerging DeFi protocols. Such impersonation campaigns typically aim to harvest credentials, private keys, or financial information by presenting a fraudulent interface that closely mimics the targeted brand’s official portal. Given the domain’s association with a major cryptocurrency platform, the potential impact includes unauthorized account access, asset theft, and further propagation of phishing schemes through compromised user data.
Infrastructure analysis reveals multiple technical indicators supporting the classification of this domain as malicious. The domain was registered on May 15, 2026, through Dynadot Inc, a registrar frequently observed in phishing operations due to its accessibility and domain management features. At the time of assessment, the domain resolved to the IP address 104.21.9.205, a Cloudflare-associated address often leveraged to obfuscate hosting origins and evade takedown efforts. Detection metrics further corroborate the threat: VirusTotal reports 3 out of 95 security vendors flagging the domain as malicious, while PhishDestroy has explicitly blocked it. Additionally, the domain appears on one security blocklist, though broader coverage remains limited, suggesting either recent activation or evasion techniques. The SSL certificate, issued by Google Trust Services, provides a veneer of legitimacy but does not mitigate the underlying malicious intent.
Users who visited binnance.cam or interacted with its content should take immediate remedial actions to mitigate potential risks. First, any credentials or sensitive information entered on the site must be considered compromised and should be changed immediately across all platforms, particularly Binance and associated cryptocurrency wallets. Multi-factor authentication (MFA) should be enabled or reviewed to ensure it has not been bypassed. Devices used to access the domain should undergo a thorough security scan to detect potential malware or unauthorized modifications. Additionally, users are advised to monitor financial accounts and transaction histories for unauthorized activity, as phishing sites of this nature often facilitate follow-up attacks. Reporting the domain to relevant security teams, such as those maintained by the targeted brand or cybersecurity organizations, can aid in broader mitigation efforts and prevent further victimization.
Copertura dei dati12 recorded checks
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologie · 3 identified
Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com Confidenza al 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Confidenza al 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confidenza al 100%Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of binnance.cam · checked Jun 25, 2026
Dati e relazioni esterneIndependent lookups and source reports
PD-20260624-D91D5C Recipient: abuse@dynadot.com Victim safety and official reportingImmediate actions and verified reporting channels
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.