cab[.]alveonltd[.]com
cab.alveonltd.com — Conteúdo indisponível. Tipo de golpe: Investment Scam. Resumo das evidências: VirusTotal 1/94 (SOCRadar); PhishDestroy score 56/100. Registrador: Tucows.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
PhishDestroy identifies cab.alveonltd.com as an active crypto drainer impersonating Alveon Ltd, a legitimate entity in the digital asset space. This malicious domain leverages deceptive branding to trick users into connecting their wallets or entering credentials, risking irreversible cryptocurrency losses. The threat actors behind this campaign use social engineering tactics—such as fake giveaways or fraudulent investment opportunities—to lure victims to the site. Once accessed, the domain executes JavaScript-based wallet drainers or phishing forms to siphon funds directly from connected wallets or trick users into revealing private keys or seed phrases. Given its active status and lack of current detections, the risk of compromise remains high for unsuspecting visitors. This domain was flagged through PhishDestroy’s threat intelligence pipeline after analysis of its infrastructure and behavior. The domain resolves to IP 188.114.96.3 and operates under a Let’s Encrypt SSL certificate, which may lend it an air of legitimacy. Notably, it shows 0 detections on VirusTotal out of 95 engines scanned, indicating a low signature-based detection rate. The domain was registered on March 3, 2026, through TUCOWS.COM, CO., a registrar that has historically been used in both legitimate and malicious deployments. While no active blocklist entries have been identified yet, its recent creation and clean reputation suggest it is a newly deployed threat designed to evade early detection. Users who have visited cab.alveonltd.com should immediately disconnect any connected wallets from the site, revoke any unintended token approvals via blockchain explorers like Etherscan or BscScan, and scan their devices for malware. Do not interact with any prompts or forms on the domain, and avoid re-visiting the link. Report this domain to PhishDestroy and your organization’s SOC for further analysis. If you entered credentials or wallet information, assume compromise and transfer remaining assets to a new, secure wallet. Always verify links and domains—especially those mimicking brands—using PhishDestroy’s real-time verification tools before taking any action.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Registration: alveonltd.com
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain alveonltd.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análise do VirusTotal
Evidências e relatórios externos
PD-20260408-15BEAF Recipient: domainabuse@tucows.com Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo