MALICIOUS — HIGH
bnbprime[.]digital
6 of 93 security engines flagged the domain; 1 public blocklist listed it (ScamSniffer); the latest stored check returned HTTP 502.
- VirusTotal
- 6/93
- Blocklists
- 1 · ScamSniffer
- Доступність
- Контент недоступний · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
bnbprime.digital — Контент недоступний (HTTP 502). Уособлення бренду: Across; Тип шахрайства: Wallet/seed Phishing. Зведення доказів: VirusTotal 6/93 (alphaMountain.ai, Certego, Fortinet, Gridinsoft, SOCRadar); 1 external blocklist match (ScamSniffer); PhishDestroy score 68/100. Реєстратор: PDR.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Digest
bnbprime.digital is classified high with an evidence score of 68/100. 6 of 93 security engines flagged the domain; 1 public blocklist listed it (ScamSniffer). Registration metadata recorded via PDR Ltd. d/b/a PublicDomainRegistry.com, hosted on 172.67.166.241 (CLOUDFLARENET - Cloudflare, Inc., US, US). The latest stored check on 9 Aug 2026 returned HTTP 502 and includes a capture. 1 outgoing abuse report is recorded, most recently on 26 Jan 2026.
Stored generated summary (templated)openai · 08.07.2026
Retained for the record. This text repeats stored detection facts and is not presented as authored analysis.
This report analyzes the domain bnbprime.digital, which is a fraudulent website designed to impersonate the across brand. The site's page title, "BNB Prime Fund | Guaranteed Daily Crypto Returns & AI Trading," promotes a nonexistent cryptocurrency investment scheme. The primary threat is a wallet_connect_phish scam, which aims to steal cryptocurrency wallet credentials or assets by tricking users into connecting their wallets to a malicious interface.
Technical examination reveals the domain was registered on 2026-02-21 via registrar PDR Ltd. d/b/a PublicDomainRegistry.com. It resolves to IP address 172.67.166.241, hosted on AS13335 Cloudflare, Inc. in the United States. VirusTotal analysis shows 6 detections out of 95 security vendors, and it was flagged by alphaMountain.ai, Certego, Fortinet, Gridinsoft, and SOCRadar. The site is present on 4 blocklists. The domain lacks SSL certificate encryption. Its nameservers are colin.ns.cloudflare.com and tricia.ns.cloudflare.com.
The site is currently offline and inaccessible. GridinSoft trust rating is 0 out of 100, and the DOM risk score is 35, indicating a moderate risk level. Given its fraudulent nature and phishing intent, this domain poses a direct threat to cryptocurrency users and should be permanently blocked.
Обсяг даних12 recorded checks
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звітиIndependent lookups and source reports
PD-20260126-4F31B6 Recipient: abuse@publicdomainregistry.com Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.