register-morico[.]com
Перевірка домену register-morico.com на фішинг і безпеку
“$MORI Coin — Мемкоин главного злодея и супергероя - Профессора Мориарти”
register-morico.com — Неперевірений. Тип шахрайства: Crypto Scam. Зведення доказів: VT 2/91 (alphaMountain.ai, Gridinsoft); URLScan no malicious verdict; GSB no flag; BL 1 (ScamSniffer); PD 63/100. Реєстратор: MAT BAO.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy first observed register-morico.com on Feb 26, 2026. Positive findings were recorded by VirusTotal and ScamSniffer. Evidence score: 63/100.
VirusTotal recorded 2 detections among 91 engines: alphaMountain.ai, Gridinsoft on Aug 5, 2026 at 14:18 UTC. The external blocklist snapshot contained 1 match (ScamSniffer) on Aug 7, 2026 at 10:20 UTC. Google Safe Browsing returned no flag on Mar 2, 2026 at 21:01 UTC. URLScan completed without a malicious verdict (score 0).
No conclusive timestamped HTTP response is stored. Registration records list MAT BAO CORPORATION as the registrar and Feb 21, 2026 as the registration date. At collection time, the domain resolved to 172.67.143.52. Captured page title: “$MORI Coin — Мемкоин главного злодея и супергероя - Профессора Мориарти”. PhishDestroy classified the observed content as Crypto Scam. DOM analysis completed on Jul 9, 2026 at 02:22 UTC; stored DOM score 56/100. IoC extraction completed on Jul 29, 2026 at 02:30 UTC; stored 0 format-validated wallet addresses and 4 Telegram indicators.
Stored full analysis18.06.2026
The domain register-morico.com has been identified as a generic phishing threat, specifically a crypto drainer designed to trick users into connecting their wallets under the guise of a meme coin called $MORI Coin. The site impersonated the fictional character Professor Moriarty, likely to lure fans of the villain-themed token. As of the latest analysis, the domain has been taken offline, but its short-lived activity posed a significant risk to cryptocurrency enthusiasts.
Technical analysis reveals that the domain was registered through MAT BAO CORPORATION on February 21, 2026, and resolved to IP address 172.67.143.52. It was flagged by 3 out of 95 VirusTotal security vendors and appeared on 2 security blocklists. The SSL certificate was issued by Google Trust Services (WE1), which may have given the site a false sense of legitimacy. Despite being flagged by only a few vendors, the nature of the threat—a crypto drainer—makes it particularly dangerous as it could lead to direct financial loss.
Given that the domain is now offline, the immediate risk is reduced, but users who may have visited the site or interacted with it should take precautions. PhishDestroy recommends that anyone who connected a wallet or entered credentials on register-morico.com should revoke permissions immediately and move funds to a new wallet. Always verify the authenticity of crypto-related sites through official channels and use tools like PhishDestroy to check domain safety before interacting. Stay vigilant against similar phishing campaigns targeting popular meme coins or fictional characters.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
ICANN отримала гроші. Підзвітність так і не з’явилася.
Для цього gTLD зазначений вище реєстратор працює за договором з ICANN. ICANN стягує щорічні, змінні та транзакційні збори, пов’язані з реєстраціями, продовженнями та трансферами.
Акредитація: монетизована. Підзвітність: будь ласка, перевірте пізніше.
Далі починається магія: ICANN пише RAA §3.18, реєстратор розслідує зловживання у власній клієнтській базі, а жертви безкоштовно надають докази, поки кожна ланка чекає, що діяти почне хтось інший. Якщо це допомагає жертвам почуватися безпечніше — чудово: рахунок спрацював.
Технології · 3 identified
Facebook pixel is an analytics tool that allows you to measure the effectiveness of your advertising.
facebook.com 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of register-morico.com · checked Mar 2, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Про цей звіт: register-morico.com
Цей звіт представляє останні збережені докази, доступні PhishDestroy. Позначки часу джерела відображаються, якщо вони доступні; доступність і рішення постачальника можуть змінитися після отримання.
Захоплений сайт відображав назву сторінки “$MORI Coin — Мемкоин главного злодея и супергероя - Профессора Мориарти”.
Станом на 07.08.2026 register-morico.com було виявлено системами безпеки 2.
Якщо ви вважаєте, що цей список є неточним, подати апеляцію. Щоб дізнатися про нашу методологію, відвідайте Сторінка поширених запитань.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога