quai-nft[.]io
“Quai”
quai-nft.io — Контент недоступен (HTTP 502). Тип мошенничества: Nft Scam. Сводка доказательств: VirusTotal 14/93 (ChainPatrol, alphaMountain.ai, CRDF, CyRadar, Fortinet); PhishDestroy score 92/100. Регистратор: Dynadot.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain quai-nft.io was registered on February 21, 2026 through Dynadot LLC and is currently listed as offline. Technical resolution points to the IP address 188.114.97.3, which belongs to AS13335 Cloudflare, Inc. and is geolocated in the United States. The domain is served by the Cloudflare nameservers julian.ns.cloudflare.com and love.ns.cloudflare.com, but no SSL certificate is presented, indicating that encrypted HTTPS connections are not available. The page title returned from the site is "Quai," and the intelligence classification identifies the activity as an NFT scam, specifically a crypto drainer.
The domain appears on three public security blocklists and has been explicitly blocked by three threat‑mitigation services: PhishDestroy, MetaMask, and SEAL. According to Gridinsoft, the trust score for the domain is 0 out of 100, reflecting maximal suspicion. VirusTotal analysis shows that 14 out of 93 security vendors have flagged the domain as malicious, reinforcing the detection consensus.
While the site is offline, the combination of a newly created domain, lack of TLS, low trust score, multiple blocklist listings, and vendor detections provides strong evidence of malicious intent. Defenders should continue to block the domain at network perimeter and endpoint layers, monitor the IP address for any future activation, and incorporate the domain and its associated IP into threat‑intel feeds. Ongoing observation is advised in case the operator re‑hosts the payload on a different infrastructure, as the underlying registration and hosting patterns may be reused.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Анализ VirusTotal
Доказательства и внешние отчеты
“Subject: Cryptocurrency Scam – Loss of €14,000 Incident Details Date of Incident: [22.12.2025] Type of Complaint: Fraud / Investment Scam / Cryptocurrency Scam Platform/Website: quai-nft.io Amount Lost: Approximately €14,000 Currency/Type: Ethereum / Crypto Incident Description: I was contacted by or interacted with the website quai-nft.io, which presented itself as a legitimate NFT/cryptocurrency investment platform. Believing it to be genuine, I transferred funds following the”
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание