frankencoin[.]win
“Borrow ZCHF Against Crypto Collateral | Frankencoin dApp”
frankencoin.win — Непроверенный. Сводка доказательств: VirusTotal 4/91 (alphaMountain.ai, CRDF, Gridinsoft, SOCRadar); PhishDestroy score 76/100. Регистратор: Porkbun.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
frankencoin.win masquerades as a decentralized application (dApp) offering crypto collateral services. Despite its offline status, it represents a sophisticated phishing attempt targeting cryptocurrency users. The page title suggests a service to borrow ZCHF against crypto collateral, which is a common lure for unsuspecting users in the crypto space.
Registered through Porkbun and hosted on an IP associated with CloudFlare in Canada, the domain is part of a broader trend of phishing sites leveraging reputable hosting services to gain legitimacy. The SSL certificate issued by Google Trust Services adds another layer of perceived trustworthiness, making it a potentially effective trap for victims.
Although frankencoin.win is currently offline, it was detected in the early stages of its lifecycle, with zero VirusTotal detections. This highlights the domain's freshness and the gap between its registration and the propagation of its malicious nature through antivirus databases. PhishDestroy's proactive detection pipeline captures such threats during this critical window, ensuring timely alerts and mitigation efforts.
The domain is listed on one public blocklist, specifically PhishDestroy's, indicating its confirmed malicious intent. This early identification and listing are crucial in preventing potential financial losses and data breaches. As phishing tactics evolve, the need for advanced detection methods becomes increasingly important to safeguard users against emerging threats.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание