iusdcoin[.]xyz
“欢è¿,跳转ä¸....”
iusdcoin.xyz — Неперевірений. Тип шахрайства: Crypto Drainer. Зведення доказів: VirusTotal 14/91 (alphaMountain.ai, BitDefender, CyRadar, Forcepoint ThreatSeeker, Fortinet); URLQuery 1 alert; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 92/100. Реєстратор: Namecheap.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy identifies iusdcoin.xyz as an active generic phishing domain propagating under the guise of a cryptocurrency service. This domain is a suspected cryptocurrency drainer kit designed to impersonate USDT wallet authentication portals. The page title in Chinese (欢è¿,跳转ä¸....) suggests redirection to a localized phishing interface, likely targeting users unfamiliar with English-language scams. No known association with legitimate cryptocurrency brands such as Tether or USDT has been confirmed at this stage.
Technical analysis reveals critical indicators: the domain resolves to IP address 107.151.247.17 and was registered on April 01, 2026 through Namecheap. VirusTotal currently shows 14/95 detections, indicating zero AV coverage. The domain uses a valid Let's Encrypt SSL certificate, increasing trust perception. Google Safe Browsing (GSB) status remains unflagged, and no blocklist entries have been recorded as of the latest scan. The seed identifier 764c6a confirms this as a tracked but unmitigated threat.
The campaign remains active and undetected across major security platforms. Immediate action is required: users should avoid accessing iusdcoin.xyz and block the IP 107.151.247.17 at the network perimeter. Organizations are advised to integrate this domain and IP into firewall and DNS blocklists. While current risk is elevated due to zero detections, the combination of recent registration, Chinese-language lure, and drainer kit behavior signals high potential for financial theft. Continuous monitoring and proactive blocking are essential to prevent victimization.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | iusdcoin.xyz |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 6 identified
ThinkPHP is an open-source PHP framework with MVC structure developed and maintained by Shanghai Topthink Company.
www.thinkphp.cn 100% впевненостіBootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com 100% впевненостіNginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% впевненостіjQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of iusdcoin.xyz · checked Apr 22, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога