parker-drops[.]xyz
“$TRENCHES Distribution”
parker-drops.xyz — İçerik kullanılamıyor (HTTP 502). Marka kimliğine bürünme: Coinbase; Dolandırıcılık türü: Crypto Scam. Kanıt özeti: VirusTotal 5/95 (alphaMountain.ai, CyRadar, Forcepoint ThreatSeeker, Fortinet, G-Data); 1 external blocklist match (ScamSniffer); PhishDestroy score 70/100.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Analysis of the domain parker-drops.xyz indicates it was actively involved in a crypto scam impersonating Coinbase, as evidenced by its page title '$TRENCHES Distribution' and explicit classification in threat intelligence sources. The domain was registered on February 21, 2026, and resolved to the IP address 172.67.216.212, hosted on Cloudflare's infrastructure (AS13335) in the United States. At the time of assessment, the domain was flagged by 5 of 95 security vendors on VirusTotal, though this detection rate suggests partial awareness rather than broad consensus. It appeared on two security blocklists and was actively blocked by PhishDestroy and ScamSniffer, reinforcing its malicious classification.
The domain's trust scores further corroborate its fraudulent nature, with Gridinsoft assigning a 0/100 rating and Scamadviser providing a 1/100 score. The SSL certificate, issued by WE1, does not mitigate the risk, as such certificates are commonly used by threat actors to lend superficial legitimacy to phishing sites. The domain's current offline status may indicate takedown action or voluntary abandonment by the operators, though historical infrastructure should still be monitored for reactivation attempts. Defenders are advised to treat parker-drops.xyz as a confirmed malicious domain associated with brand impersonation targeting Coinbase users.
Network-level blocking of the IP 172.67.216.212 and related Cloudflare-hosted infrastructure is recommended to prevent potential resurgence. Given the domain's low detection rates at the time of analysis, reliance on signature-based defenses alone may be insufficient; behavioral and heuristic monitoring should be employed to detect similar campaigns. The exact content and mechanics of the scam remain unconfirmed, as the site's visual or functional details were not analyzed, but the available evidence aligns with known crypto drainer or fraudulent distribution schemes.
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Adli İstihbarat
VirusTotal Analizi
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin