arcoin[.]global
“ArCoin - Trading Hub”
Сохранённое обнаружение
Обнаружена маскировка
- Тип маскировки
content_divergence- Оценка маскировки
- 2/6
Сводка доказательств
This domain is under investigation for brand impersonation targeting Aave, a decentralized finance protocol. The threat type involves mimicking legitimate crypto services to deceive users into interacting with malicious smart contracts or disclosing wallet credentials. While no overt malware payloads have been confirmed, the infrastructure aligns with known crypto drainer or wallet-hijacking campaigns, particularly given the domain's focus on trading-related activity. Analysis reveals the domain arcoin.global was registered on June 19, 2025, through NameSilo, LLC, and resolves to IP address 104.21.80.1. It is currently offline but was previously active with the page title 'ArCoin - Trading Hub.' The domain appears on one security blocklist and is blocked by PhishDestroy. VirusTotal reports 0/95 detections, indicating no antivirus engines have flagged it yet, while Gridinsoft assigns a trust score of 0/100. Infrastructure analysis shows the use of Cloudflare for hosting, Zoho for backend services, and a Let's Encrypt SSL certificate, which are common in both legitimate and malicious deployments. Mitigation steps for this threat type include proactively blocking the domain and its resolving IP (104.21.80.1) at the network level. Organizations should monitor for user interactions with the domain, particularly in logs or transaction records involving crypto wallets. End users should be educated to verify domain authenticity before connecting wallets or entering credentials, especially when prompted by unsolicited trading or DeFi-related offers. Security teams are advised to correlate this domain with other Aave-themed impersonation attempts and check for overlapping infrastructure patterns.
Data Coverage
Данные сетевой безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 12.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
VirusTotal
0 → 1
-
VirusTotal
1 → 0
-
Статус домена
Доступен → Недоступен
Сообщения сообщества
Сообщил 1 участник сообщества; впервые замечено 31.07.2025
- Сохранённые сообщения
- 1
- Уникальные URL
- 1
Данные сообщества
2 сообщения сообщества
КатегорияFAKE_RETURNS
Case 1: Tondexbit Scam I invested in Tondexbit, as their platform advertised high SOL prices. I purchased SOL on Binance and transferred it to Tondexbit to sell. However, I was unable to withdraw my funds. The platform claimed I needed to deposit an additional $1,000 to verify my
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии
Выявлено 3 технологии с высокой уверенностью
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of arcoin.global · checked Jun 27, 2026
Похожие домены
Сохранено 95 похожих доменов
Показать все (83)
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание