heaviescoin.com
“HEAVIES”
heaviescoin.com — Encoberto · alcançável (HTTP 200). Representação da marca: Unknown; Tipo de golpe: Crypto Drainer. Resumo das evidências: VirusTotal 2/89 (Chong Lua Dao, Gridinsoft); cloaking observed; PhishDestroy score 86/100. Registrador: Porkbun.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Resumo das evidências
This report analyzes the domain heaviescoin.com, which is classified as a crypto drainer phishing threat. The domain is currently offline and remains under investigation. Analysis indicates the site impersonated the HEAVIES brand to deceive visitors into connecting cryptocurrency wallets, likely for asset theft.
Infrastructure analysis reveals heaviescoin.com was registered on August 28, 2025, through Porkbun LLC. The domain resolves to IP address 216.150.1.129 and employs technologies including Vercel and HSTS. VirusTotal shows 0 detections out of 95 vendors, meaning no security engines flagged the domain during scanning. GridinSoft assigns a trust score of 0 out of 100, and the domain appears on 1 security blocklist (PhishDestroy). The SSL certificate was issued by Let's Encrypt.
As of this report, heaviescoin.com is taken offline and blocked by PhishDestroy. Recommendations include monitoring for similar domains registered through Porkbun LLC and checking network logs for connections to IP 216.150.1.129. Users should avoid interacting with HEAVIES-branded sites not verified through official channels and enable browser-based phishing protections.
Inteligência de segurança de rede
Forensic History & Detection Timeline
-
Domain Status Transition Sep 12, 2026 · 00:17 UTCDomain state transitioned from dead to alive.
-
Domain Status Transition Sep 11, 2026 · 00:26 UTCDomain state transitioned from alive to dead.
-
VirusTotal Detections Update Jun 27, 2026 · 05:36 UTCVirusTotal scanner detections updated from 1 to 0. Resolved alerts: Gridinsoft.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Evasion evidence
Cloaking confirmed: scanners and victims see different content
The page served one response to a browser-like visitor and another to a crawler or security scanner. Cloaking exists only to keep reviewers away from the real landing page.
- Stored cloaking flag
- Observed
- Tipo de cloaking
status_split- Pontuação de cloaking
- 1/6
- Last cloaking scan
- Server header seen by scanner
openresty
Scanner note: expired: raw=parked; http=200; via=https_proxy; server=openresty
Tecnologias · 2 identified
Análise do VirusTotal
Evidências arquivadas
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of heaviescoin.com · checked Jun 27, 2026
Denúncias da comunidade
Denunciado por 1 membro da comunidade; visto pela primeira vez em 02/09/2025
- Denúncias armazenadas
- 1
- URLs únicas denunciadas
- 1
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo