bitvyn[.]com
“Buy & Sell Bitcoin, Ethereum | Cryptocurrency Exchange | Bitvyn”
Сводка доказательств
Analysis on www.bitvyn.com indicates the site was used for a cryptocurrency brand impersonation campaign targeting Ethereum users. The domain was registered on 21 February 2026 and resolves to the Cloudflare‑owned address 104.21.78.211, associated with ASN 13335 in the United States. The TLS certificate presented is identified as WE1, confirming the use of HTTPS. The page title retrieved during the last scan reads “Buy & Sell Bitcoin, Ethereum | Cryptocurrency Exchange | Bitvyn”, which aligns with the declared scam type of a crypto scam.
VirusTotal recorded nine positive detections out of ninety‑three scanners, confirming malicious classification by multiple vendors. The domain is listed on a single security blocklist and received a Gridinsoft trust score of 0 out of 100, indicating extreme risk. PhishDestroy has actively blocked the domain, and the current HTTP status is offline, suggesting the site has been taken down or is no longer serving content. Evidence of brand impersonation is explicit: the domain claims to offer cryptocurrency services while mimicking the Ethereum brand, as reflected in the page title and the “Impersonates: Ethereum” label.
No additional intelligence such as Safe Browsing verdicts, Open Threat Exchange references, or registrar details are available. Defenders should continue to block the domain at network perimeter, update URL filtering lists, and monitor the associated IP address for any re‑use. Because the site is already offline, immediate threat mitigation focuses on preventing residual phishing links from being accessed and ensuring that endpoint protection solutions recognize the nine vendor detections. Ongoing observation of Cloudflare‑hosted IP ranges for new domains with similar characteristics is recommended.
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
10 внешних источников под наблюдением Совпадений нет
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание