MALICIOUS — CRITICAL
wealthicator[.]live
wealthicator.live is a crypto drainer phishing as an AI trading platform. 1/95 AV flags it. Verify on PhishDestroy.
- VirusTotal
- 16/91
- Blocklists
- No stored match
- Kullanılabilirlik
- Bilinen son aktif · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
wealthicator.live — Bilinen son aktif (HTTP 200). Kanıt özeti: VirusTotal 16/91 (alphaMountain.ai, Bfore.Ai PreCrime, BitDefender, Cluster25, CRDF); Spamhaus DBL_PHISH; PhishDestroy score 100/100. Kayıt kuruluşu: NiceNIC.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Evidence Analysis
The domain wealthicator.live has been flagged with an elevated risk level for operating as a generic phishing site, specifically a crypto drainer that impersonates an AI-assisted trading platform under the name 'Wealthicator'. This threat is designed to trick users into connecting their cryptocurrency wallets or providing sensitive information, ultimately leading to asset theft. The site is now offline, but its infrastructure remains a concern for future campaigns.
VirusTotal data shows only 1 out of 95 security vendors flagged the domain, indicating low detection rates. The domain was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED on May 18, 2026, and resolves to IP address 188.114.96.3. It uses a Let's Encrypt SSL certificate (E8) and appears on one security blocklist. AlienVault OTX detected it in one threat intelligence pulse, and the page title was 'Wealthicator | Official Platform for AI Assisted Trading'. These indicators, combined with the low blocklist presence, suggest the phishing campaign may have operated under the radar.
Users should never interact with wealthicator.live or any similar unsolicited offers for AI-assisted trading platforms. PhishDestroy recommends verifying all trading platforms through official channels and avoiding wallet connections to unknown sites. If any credentials or wallet keys were entered, they should be considered compromised immediately. Enable two-factor authentication on all accounts and monitor for unauthorized transactions. Report any suspicious domains to PhishDestroy to help protect the community.
Veri kapsamı13 recorded checks
Ağ Güvenliği İstihbaratı Registrar context
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Etki Alanı Analizi
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-09 02:45:34 UTC
VirusTotal Analizi
Site Yapılandırma Analizi
Kanıtlar ve Dış RaporlarIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.