coin-qr[.]to
“Bitcoin QR Code Generator Online”
coin-qr.to — Неперевірений. Уособлення бренду: Ethereum; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 12/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); 4 external blocklist matches; PhishDestroy score 91/100. Реєстратор: Government of Kingdom ….
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
coin-qr.to is a malicious website that poses as a legitimate Bitcoin QR code generator, but its real purpose is to impersonate Ethereum and trick users into connecting their crypto wallets or revealing sensitive information. This type of scam, often called a crypto drainer, can lead to the theft of digital assets if a user interacts with the site. The domain was created on January 8, 2024, and was registered through the Government of the Kingdom of Tonga, an unusual registrar choice that often indicates an attempt to evade takedown. Security vendor analysis on VirusTotal shows that 14 out of 95 engines flag the domain as malicious, and it is currently listed on 5 security blocklists. The site has no SSL certificate, meaning any data transmitted is unencrypted and vulnerable to interception. It resolves to IP address 45.12.2.86, and has been found in 2 threat intelligence pulses on AlienVault OTX, confirming its connection to broader phishing campaigns. While the site is currently offline, users who visited it should take immediate action. Do not enter any sensitive information or connect any cryptocurrency wallet to suspicious sites. Run a full antivirus scan on your device, monitor your crypto accounts for unauthorized transactions, and change any passwords that may have been reused on the site. If you suspect funds were stolen, contact your wallet provider or exchange immediately. Always verify website legitimacy through trusted sources like PhishDestroy before engaging with crypto-related services.
Сигнали безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
“Warning to the ChainAbuse community: The operator from Russia (🇷🇺) who goes by the pseudonyms "icryptofbi", "cryptofbi007", "Olgareva" or "@gabrielenesto1 (Gabriel Enesto)" of the crypto QR code phishing network (https://bitcointalk.org/index.php?topic=5475430.0) is also running fake cryptocurrency mixer phishing scam websites. The domains to be cautious of include: - eth-mixer.to (Archive: https://archive.is/I9Bnq) - btc-mixer.to (Archive: https://archive.is/TaqxC) - ltc-mixer.to (Archive”
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога