bitgetwallet[.]capital
“下载 Bitget Wallet | 适用于iOS、安卓和谷歌浏览器 | Bitget Wallet”
bitgetwallet.capital — Непроверенный. Олицетворение бренда: Avalanche; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 3/91 (alphaMountain.ai, Forcepoint ThreatSeeker, Gridinsoft); PhishDestroy score 65/100. Регистратор: Gname.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain bitgetwallet.capital is currently resolved to the IPv6 address 2606:4700::6812:891, which belongs to AS13335 operated by Cloudflare, Inc. The hosting location is the United States. The domain is delegated to the authoritative nameservers a.share-dns.com and b.share-dns.net. Registration was performed through Gname.com Pte. Ltd., a registrar that frequently appears in abuse reports. The site is listed on a single security blocklist and is explicitly blocked by PhishDestroy, indicating that at least one defensive feed has identified it as malicious. No SSL certificate is present, and the site is reported as offline, meaning no HTTP response is currently reachable. Content analysis is limited to the page title returned by the DNS query, which reads “下载 Bitget Wallet | 适用于iOS、安卓和谷歌浏览器 | Bitget Wallet”.
The title is in Chinese and references a Bitget wallet download for iOS, Android, and Chrome, suggesting a crypto‑related lure. The intelligence tags the domain as a crypto scam that impersonates the Avalanche brand, confirming a brand‑impersonation motive. Detection services provide mixed signals. VirusTotal records two positive detections out of ninety‑five scanners, indicating that a minority of vendors have flagged the domain for malicious behavior. Gridinsoft assigns a trust score of 0 out of 100, and Scamadviser rates the site at 26 out of 100, both reflecting a very low credibility assessment.
The combination of a low trust score, the absence of TLS, and the brand‑impersonation claim strengthens the suspicion of fraudulent activity. Uncertainties remain because the site is offline and no payload, certificate, or network traffic samples are available for deeper forensic analysis. Defenders should therefore treat the domain as high‑risk until further evidence is gathered. Recommended actions include adding bitgetwallet.
Сигналы безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание