coin-qr[.]to
“Bitcoin QR Code Generator Online”
coin-qr.to — Non verificato. Simulazione del marchio: Ethereum; Tipo di truffa: Crypto Scam. Riepilogo delle prove: VirusTotal 12/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); 4 external blocklist matches; PhishDestroy score 91/100. Registrar: Government of Kingdom ….
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
coin-qr.to is a malicious website that poses as a legitimate Bitcoin QR code generator, but its real purpose is to impersonate Ethereum and trick users into connecting their crypto wallets or revealing sensitive information. This type of scam, often called a crypto drainer, can lead to the theft of digital assets if a user interacts with the site. The domain was created on January 8, 2024, and was registered through the Government of the Kingdom of Tonga, an unusual registrar choice that often indicates an attempt to evade takedown. Security vendor analysis on VirusTotal shows that 14 out of 95 engines flag the domain as malicious, and it is currently listed on 5 security blocklists. The site has no SSL certificate, meaning any data transmitted is unencrypted and vulnerable to interception. It resolves to IP address 45.12.2.86, and has been found in 2 threat intelligence pulses on AlienVault OTX, confirming its connection to broader phishing campaigns. While the site is currently offline, users who visited it should take immediate action. Do not enter any sensitive information or connect any cryptocurrency wallet to suspicious sites. Run a full antivirus scan on your device, monitor your crypto accounts for unauthorized transactions, and change any passwords that may have been reused on the site. If you suspect funds were stolen, contact your wallet provider or exchange immediately. Always verify website legitimacy through trusted sources like PhishDestroy before engaging with crypto-related services.
Indicatori di sicurezza
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Analisi di VirusTotal
Prove archiviate
Dati e relazioni esterne
“Warning to the ChainAbuse community: The operator from Russia (🇷🇺) who goes by the pseudonyms "icryptofbi", "cryptofbi007", "Olgareva" or "@gabrielenesto1 (Gabriel Enesto)" of the crypto QR code phishing network (https://bitcointalk.org/index.php?topic=5475430.0) is also running fake cryptocurrency mixer phishing scam websites. The domains to be cautious of include: - eth-mixer.to (Archive: https://archive.is/I9Bnq) - btc-mixer.to (Archive: https://archive.is/TaqxC) - ltc-mixer.to (Archive”
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo