bnbusdt.info
“SEND USDT”
BNBUSDt.info is a high-risk crypto drainer domain. 8/95 security vendors on VirusTotal flag this domain, registered through GoDaddy.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Зведення доказів
This domain, www.bnbusdt.info, poses a specific threat as a crypto drainer. It is designed to trick users into sending their USDT (a popular stablecoin) to addresses controlled by the attackers. The domain's purpose is to mimic legitimate cryptocurrency services, leading users to believe they are engaging in secure transactions when in fact their funds are being stolen.
Analysis indicates that 8 out of 95 security vendors on VirusTotal detect this domain as malicious. The domain is registered through GoDaddy.com, LLC, and it resolves to an IP address located in the United Kingdom (GB) under the Autonomous System AS20860 IOMART CLOUD SERVICES LIMITED. The IP address is 77.245.76.110. This domain also appears on a single security blocklist, indicating a moderate level of recognition among cybersecurity professionals. The SSL certificate is issued by Let's Encrypt, which is common for both legitimate and malicious websites but does not guarantee the site's safety.
If users have visited this domain, they are advised to immediately stop any transactions and verify the security of their cryptocurrency wallets. It is recommended to change any passwords or private keys associated with cryptocurrency accounts and to monitor account activity for any unauthorized transactions. Users should also report the incident to their respective cryptocurrency exchanges and consider implementing additional security measures such as two-factor authentication and using hardware wallets for future transactions.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | www.bnbusdt.info |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Evasion analysis
Cloaking & traffic-distribution check
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
- Stored cloaking flag
- Not observed
- Оцінка маскування
- 0/6
- Last cloaking scan
Scanner note: timeout: raw=timeout; http=0; via=http_proxy; error=HTTPConnectionPool(host='23.95.244.229', port=6182): Read timed out. (read timeout=7)
Аналіз VirusTotal
Архівні докази
Повідомлення спільноти
Повідомив 1 учасник спільноти; уперше помічено 30.05.2026
- Збережені повідомлення
- 1
- Унікальні URL
- 1
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога