Vai al rapporto di sicurezza
⚠️
Questo dominio è stato segnalato come dannoso
Motori di sicurezza che segnalano un rilevamento: 3. Blocklist pubbliche che segnalano una corrispondenza: 2. Prestare estrema cautela: non inserire credenziali o informazioni personali.
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . It contains 9 outgoing records; the latest is dated . The recorded recipient is abuse@domain.me. The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
5 months
Reports sent
9
Latest case ID
PD-1772687196-xmrwallet.me
Current status
Observed active at latest stored check
Sicurezza del dominio e intelligence sulle minacce

xmrwallet[.]me

“Best Monero Wallet (XMR) - Send”

Verdetto di minaccia Critico Punteggio delle prove 78/100
Disponibilità Non verificato La raggiungibilità attuale non è verificata
Rilevamenti VirusTotal: 3/91 Spamhaus DBL: DBL_PHISH Corrispondenze della blocklist memorizzate: 2 Tipo di truffa: Crypto Scam
05/03/2026 9 Reports Sent
Riepilogo del rapporto

xmrwallet.me — Non verificato. Tipo di truffa: Crypto Scam. Riepilogo delle prove: VirusTotal 3/91 (alphaMountain.ai, Fortinet, Gridinsoft); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 78/100. Registrar: Key-Systems.

L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.

Riepilogo delle prove
CRITICO
Rif.
83EFCAAF
Punteggio
78/100

This report analyzes the domain xmrwallet.me, which was identified as a cryptocurrency scam site. The page title, "Best Monero Wallet (XMR) - Send," indicates the site claimed to offer a Monero wallet service. The threat posed is credential theft or cryptocurrency theft, as fraudulent wallet sites typically trick users into entering private keys or sending funds.

Technical analysis reveals the domain was flagged by 4 out of 95 VirusTotal vendors, specifically Fortinet, Gridinsoft, and SOCRadar. It appears on 3 blocklists. The domain was registered on 2026-03-05 via Key-Systems GmbH and uses nameservers ns1.ddos-guard.net and ns2.ddos-guard.net. The SSL certificate is R13. The GridinSoft trust score is 0 out of 100, and the domain risk score is 63.

The domain is currently offline. The high risk score and presence on multiple blocklists confirm it is a malicious site. Users should avoid any interaction with this domain.

VirusTotal
VirusTotal
3 det.
DNS Security
3/14
URLScan
URLScan
Certificato TLS
Let's Encrypt
Età
5 mo
Stato osservato
Non verificato
PhishDestroy
Elenco da eliminare
In elenco
Reports Sent
9
Copertura dei dati VirusTotal 3 / 91 URLQuery source data unavailable PhishStats checked — no match recorded OTX no community references CF Radar scan completed URLScan capture rapporto memorizzato URLScan verdict Analisi completata Blocchi DNS 3/14 TLS valid certificate, 83d WHOIS 5 mo old Screenshot 3 captures · 2 sources Catena di reindirizzamenti non sondato
Informazioni sulla sicurezza di rete
DNS Provider Blocks 3 / 14
Controld Adblock Controld Family Controld Malware

Pipeline di risposta alle minacce

Scoperta
Checks
Reports
Disponibilità
25/26
Initial Abuse Report (#1)
Sent to 1 abuse contact at Key-Systems GmbH with forensic evidence
abuse@domain.me
05/03/2026
ICANN Escalation #2
Escalation #2 sent to 2 recipients including ICANN Compliance — follow-up record after a previous report
abuse@domain.mecompliance@icann.org
06/03/2026
ICANN Escalation #3
Escalation #3 sent to 2 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse@domain.mecompliance@icann.org
08/03/2026
ICANN Escalation #4
Escalation #4 sent to 2 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse@domain.mecompliance@icann.org
12/03/2026
ICANN Escalation #5
Escalation #5 sent to 2 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse@domain.mecompliance@icann.org
14/03/2026
ICANN Escalation #6
Escalation #6 sent to 2 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse@domain.mecompliance@icann.org
16/03/2026
ICANN Escalation #7
Escalation #7 sent to 2 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse@domain.mecompliance@icann.org
26/03/2026
ICANN Escalation #8
Escalation #8 sent to 2 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse@domain.mecompliance@icann.org
30/03/2026
ICANN Escalation #9
Escalation #9 sent to 2 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse@domain.mecompliance@icann.org
31/03/2026
9 Reports Filed
9 report records were stored over 164 days; current observed status: Non verificato

Stato della lista di blocco pubblica

Acquisizione salvata

Analisi dei domini

Dominio
URLScan Verdict Analisi completata score 0 report ↗
Server / ASN ddos-guard · AS57724 DDOS-GUARD LTD
Reputazione IP abuse score 0/100 0 reports checked 07/08/2026
Registrar Key-Systems DE(DE)
Indirizzo IP 185.129.100.248 RU
PosizioneRU Moscow, RU
ReteAS57724 · InSales Rus LLC
RegistrazioneCreato 05/03/2026 (164d)
Elapsed Since First Report 6 days
Cosa conteggiamo Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: Non verificato.
Minimum notice count 9 is the number of stored outgoing report records for this domain. It does not by itself prove acknowledgement or action by a recipient.
Cosa contiene ogni rapporto I record archiviati dei report in uscita possono fare riferimento a prove disponibili in quel momento, come verdetti dei fornitori, dati di registrazione, dettagli di hosting, classificazioni o screenshot. Questa pagina non deduce l'esatto carico utile consegnato, la ricevuta, la conferma o l'azione da parte di un destinatario.
ICANN RAA §3.18 The history below lists stored escalation records and timestamps. It does not by itself establish receipt, acknowledgement, compliance, or enforcement by any recipient.
Dettagli tecniciDNS, SAN SSL, timestamp
Rilevato per la prima volta05/03/2026
DOM Analysisanalyzed 09/07/2026score 78/100
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Favicon Hash
Case ID
Titolo della pagina
Best Monero Wallet (XMR) - Send
Certificato TLS
Valid transport encryption · Emesso da Let's Encrypt · valid for 83 days
Cronologia delle segnalazioni di abuso · 9 stored reports over 27 days · click to expand
This timeline is built from stored outgoing report records. It documents timestamps and listed recipients, but does not by itself prove delivery, acknowledgement, or recipient action.
9 abuse reports filed over 164 days — latest observed status: Non verificato
The records name Key-Systems GmbH as a recipient or subject. ICANN Compliance appears in the recipient field for at least one record.
9
reports
164
days
ICANN CC
  1. Report #1 Mar 5, 2026 · 05:06 UTC
    Phishing Abuse Report: xmrwallet[.]me
    abuse@domain.me
  2. Report #2 ICANN CC 28h still active Mar 6, 2026 · 09:35 UTC
    ESCALATION #2 (28h active): Phishing - xmrwallet[.]me
    abuse@domain.me compliance@icann.org
  3. Report #3 ICANN CC 79h still active Mar 8, 2026 · 13:04 UTC
    ESCALATION #3 (79h active): Phishing - xmrwallet[.]me
    abuse@domain.me compliance@icann.org
  4. Report #4 ICANN CC 177h still active Mar 12, 2026 · 14:38 UTC
    ESCALATION #4 (177h active): Phishing - xmrwallet[.]me
    abuse@domain.me compliance@icann.org
  5. Report #5 ICANN CC 230h still active Mar 14, 2026 · 19:17 UTC
    ESCALATION #5 (230h active): Phishing - xmrwallet[.]me
    abuse@domain.me compliance@icann.org
  6. Report #6 ICANN CC 280h still active Mar 16, 2026 · 21:08 UTC
    ESCALATION #6 (280h active): Phishing - xmrwallet[.]me
    abuse@domain.me compliance@icann.org
  7. Report #7 ICANN CC 504h still active Mar 26, 2026 · 08:29 UTC
    ESCALATION #7 (504h active): Phishing - xmrwallet[.]me
    abuse@domain.me compliance@icann.org
  8. Report #8 ICANN CC 614h still active Mar 30, 2026 · 22:23 UTC
    ESCALATION #8 (614h active): Phishing - xmrwallet[.]me
    abuse@domain.me compliance@icann.org
  9. Report #9 ICANN CC 632h still active Mar 31, 2026 · 16:59 UTC
    ESCALATION #9 (632h active): Phishing - xmrwallet[.]me
    abuse@domain.me compliance@icann.org
Record scope: the timeline documents outgoing records stored by PhishDestroy. Delivery, acknowledgement, and subsequent action require separate recipient or infrastructure evidence.
Tecnologie · 4 identified
PHP
Programming languages

Server-side scripting language designed for web development.

jQuery
JavaScript libraries

Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.

HSTS
Sicurezza

HTTP Strict Transport Security — forces browsers to use HTTPS connections only.

DDoS-Guard
Detected via Cloudflare Radar · Wappalyzer engine
Segnala questo dominio Invia le prove e contribuisci a proteggere gli altri

Analisi di VirusTotal

3 / I fornitori di sicurezza 91 hanno contrassegnato questo dominio
View on VT
Last analyzed Previous stored snapshot: 4 detections
alphaMountain.ai
Fortinet
Gridinsoft

Prove archiviate

Wayback Machine Snapshot
È disponibile un'istantanea storica per la revisione delle prove
View Archive
Analisi delle prestazioni del sito

Google PageSpeed Insights — mobile performance audit of xmrwallet.me · checked Mar 5, 2026

71
Needs Work
Performance
FCP
2.65s
First Contentful Paint
LCP
5.98s
Largest Contentful Paint
CLS
0.053
Cumulative Layout Shift
TBT
20ms
Total Blocking Time
SI
4.54s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

Dati e relazioni esterne

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-1772687196-xmrwallet.me Recipient: abuse@domain.me
URLScan evidence VirusTotal evidence
Blocklist hits included with submission: SEAL

Questo sito ti ha influenzato in qualche modo?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.

Europol
Trova il canale di segnalazione ufficiale per il tuo paese dell'UE
National police directory
Attenzione ai truffatori che promettono il recupero dei fondi! I criminali possono contattare nuovamente le vittime fingendo di essere investigatori, avvocati o agenti di recupero. Non pagare commissioni anticipate né condividere credenziali. Scopri di più sulle frodi relative ai sussidi di recupero →

Segnalalo alle autorità locali

Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.

Elenco di 97 paesi
Bozza assistita dall'intelligenza artificiale: i dettagli dell'incidente vengono elaborati dal fornitore di intelligenza artificiale Controllalo e invialo tu stesso

Verifica qualsiasi dominio

Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica

Scansiona ora

Segnala un tentativo di phishing

Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità

Segnala

Feed in tempo reale sulle minacce

Segnalazioni recenti di phishing e modifiche osservate della disponibilità

Monitora

Rimani informato, rimani al sicuro

Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo

Feed in tempo reale sulle minacce Contesta questo annuncio
HTML · IFRAME

Incorpora questo rapporto

Condividi queste informazioni sulle minacce sul tuo sito web o sul tuo blog

embed.html
<iframe
  src="https://phishdestroy.io/it/embed/domain/xmrwallet.me"
  title="PhishDestroy threat report for xmrwallet.me"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>