wallet[.]mymonero[.]dev
“403 Forbidden”
The domain wallet.mymonero.dev has been identified as a crypto drainer, a type of threat designed to steal cryptocurrency from unsuspecting users. This domain is currently offline, but it was actively impersonating the legitimate MyMonero wallet service to trick victims into connecting their wallets and authorizing malicious transactions. The domain was registered through Dynadot LLC on May 17, 2026, and resolved to IP address 188.114.96.3. It is flagged by 3 of 95 VirusTotal vendors and appears on one security blocklist, with an SSL certificate issued by Let's Encrypt (E8).
Further analysis reveals that the domain has a low trust score and is associated with elevated risk. PhishDestroy's research indicates that this crypto drainer was part of a broader campaign targeting cryptocurrency users. The domain's creation date and hosting details suggest a short-lived but dangerous operation. Users who may have interacted with this site are urged to revoke any wallet approvals immediately and transfer funds to a new, secure wallet.
Given the confirmed threat, PhishDestroy recommends that all users avoid visiting wallet.mymonero.dev or any similar domains. Always verify the authenticity of cryptocurrency services by checking official sources and using tools like PhishDestroy to detect scams. If you have already interacted with this site, take immediate action to secure your assets and monitor for unauthorized transactions.
Процес реагування на загрози Pipeline
Перевірка за блок-листами
Джерел: 10 · синхронізовано 09.08.2026
Дані спільноти
Звітів спільноти: 1
КатегоріяPHISHING
Blacklist from Phishfort
Аналітика доменів
Технічні подробиціDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Registration: mymonero.dev
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain mymonero.dev behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога