Перейти до звіту про безпеку
⚠️
Цей домен було позначено як шкідливий
Системи безпеки повідомляють про виявлення: 3. Публічні списки блокувань, які повідомляють про збіг: 2. Будьте дуже обережні — не вводьте облікові дані чи особисту інформацію.
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . It contains 9 outgoing records; the latest is dated . The recorded recipient is abuse@domain.me. The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
5 months
Reports sent
9
Latest case ID
PD-1772687196-xmrwallet.me
Current status
Observed active at latest stored check
Безпека домену та аналіз загроз

xmrwallet[.]me

“Best Monero Wallet (XMR) - Send”

Загрозливий вердикт Критичний 78/100 оцінка доказів
Доступність Неперевірений Поточна доступність не перевірена
Виявлення VirusTotal: 3/91 Spamhaus DBL: DBL_PHISH Збережений список блокувань відповідає: 2 Тип шахрайства: Crypto Scam
05.03.2026 9 Reports Sent
Огляд звіту

xmrwallet.me — Неперевірений. Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 3/91 (alphaMountain.ai, Fortinet, Gridinsoft); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 78/100. Реєстратор: Key-Systems.

Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.

Зведення доказів
КРИТИЧНИЙ
Посилання
83EFCAAF
Оцінка
78/100

This report analyzes the domain xmrwallet.me, which was identified as a cryptocurrency scam site. The page title, "Best Monero Wallet (XMR) - Send," indicates the site claimed to offer a Monero wallet service. The threat posed is credential theft or cryptocurrency theft, as fraudulent wallet sites typically trick users into entering private keys or sending funds.

Technical analysis reveals the domain was flagged by 4 out of 95 VirusTotal vendors, specifically Fortinet, Gridinsoft, and SOCRadar. It appears on 3 blocklists. The domain was registered on 2026-03-05 via Key-Systems GmbH and uses nameservers ns1.ddos-guard.net and ns2.ddos-guard.net. The SSL certificate is R13. The GridinSoft trust score is 0 out of 100, and the domain risk score is 63.

The domain is currently offline. The high risk score and presence on multiple blocklists confirm it is a malicious site. Users should avoid any interaction with this domain.

VirusTotal
VirusTotal
3 det.
DNS Security
3/14
URLScan
URLScan
Сертифікат TLS
Let's Encrypt
Вік
6 mo
Зафіксований статус
Неперевірений
PhishDestroy
DestroyList
У списку
Reports Sent
9
Обсяг даних VirusTotal 3 / 91 URLQuery source data unavailable PhishStats checked — no match recorded OTX no community references CF Radar scan completed URLScan capture збережений звіт URLScan verdict Аналіз завершено Блокування DNS 3/14 TLS valid certificate, 83d WHOIS 6 mo old Знімок екрана 3 captures · 2 sources Ланцюжок перенаправлень не досліджено
Розвіддані з мережевої безпеки
DNS Provider Blocks 3 / 14
Controld Adblock Controld Family Controld Malware

Процес реагування на загрози Pipeline

Відкриття
Checks
Reports
Доступність
25/26
Initial Abuse Report (#1)
Sent to 1 abuse contact at Key-Systems GmbH with forensic evidence
abuse@domain.me
05.03.2026
ICANN Escalation #2
Escalation #2 sent to 2 recipients including ICANN Compliance — follow-up record after a previous report
abuse@domain.mecompliance@icann.org
06.03.2026
ICANN Escalation #3
Escalation #3 sent to 2 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse@domain.mecompliance@icann.org
08.03.2026
ICANN Escalation #4
Escalation #4 sent to 2 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse@domain.mecompliance@icann.org
12.03.2026
ICANN Escalation #5
Escalation #5 sent to 2 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse@domain.mecompliance@icann.org
14.03.2026
ICANN Escalation #6
Escalation #6 sent to 2 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse@domain.mecompliance@icann.org
16.03.2026
ICANN Escalation #7
Escalation #7 sent to 2 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse@domain.mecompliance@icann.org
26.03.2026
ICANN Escalation #8
Escalation #8 sent to 2 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse@domain.mecompliance@icann.org
30.03.2026
ICANN Escalation #9
Escalation #9 sent to 2 recipients including ICANN Compliance — follow-up record after multiple previous reports
abuse@domain.mecompliance@icann.org
31.03.2026
9 Reports Filed
9 report records were stored over 165 days; current observed status: Неперевірений

Статус у публічних блоклистах

Збережений знімок

Аналітика доменів

Домен
URLScan Verdict Аналіз завершено score 0 report ↗
Сервер / ASN ddos-guard · AS57724 DDOS-GUARD LTD
Репутація IP abuse score 0/100 0 reports checked 07.08.2026
Реєстратор Key-Systems DE(DE)
Контакт для скаргabuse@key-systems.net
IP-адреса 185.129.100.248 RU
ГеолокаціяRU Moscow, RU
МережаAS57724 · InSales Rus LLC
Зворотний пошук IPviewdns.info → rapiddns.io →
РеєстраціяСтворено 05.03.2026 (165d)
Elapsed Since First Report 6 days
Що ми враховуємо Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: Неперевірений.
Minimum notice count 9 is the number of stored outgoing report records for this domain. It does not by itself prove acknowledgement or action by a recipient.
Що містить кожен звіт Збережені записи вихідних звітів можуть посилатися на докази, доступні на той час, наприклад вердикти постачальників, реєстраційні дані, деталі хостингу, класифікації або знімки екрана. Ця сторінка не визначає точного доставленого корисного навантаження, квитанції, підтвердження чи дії одержувача.
ICANN RAA §3.18 The history below lists stored escalation records and timestamps. It does not by itself establish receipt, acknowledgement, compliance, or enforcement by any recipient.
Технічні деталіDNS, SAN-адреси SSL, мітки часу
Вперше виявлено05.03.2026
DOM Analysisanalyzed 09.07.2026score 78/100
IoC Extractionscanned 29.07.20260 wallet · 0 Telegram IoCs
Favicon Hash
Case ID
Заголовок сторінки
Best Monero Wallet (XMR) - Send
Сертифікат TLS
Valid transport encryption · Виданий Let's Encrypt · valid for 83 days
Історія скарг на зловживання · 9 stored reports over 27 days · click to expand
This timeline is built from stored outgoing report records. It documents timestamps and listed recipients, but does not by itself prove delivery, acknowledgement, or recipient action.
9 abuse reports filed over 165 days — latest observed status: Неперевірений
The records name Key-Systems GmbH as a recipient or subject. ICANN Compliance appears in the recipient field for at least one record.
9
reports
165
days
ICANN CC
  1. Report #1 Mar 5, 2026 · 05:06 UTC
    Phishing Abuse Report: xmrwallet[.]me
    abuse@domain.me
  2. Report #2 ICANN CC 28h still active Mar 6, 2026 · 09:35 UTC
    ESCALATION #2 (28h active): Phishing - xmrwallet[.]me
    abuse@domain.me compliance@icann.org
  3. Report #3 ICANN CC 79h still active Mar 8, 2026 · 13:04 UTC
    ESCALATION #3 (79h active): Phishing - xmrwallet[.]me
    abuse@domain.me compliance@icann.org
  4. Report #4 ICANN CC 177h still active Mar 12, 2026 · 14:38 UTC
    ESCALATION #4 (177h active): Phishing - xmrwallet[.]me
    abuse@domain.me compliance@icann.org
  5. Report #5 ICANN CC 230h still active Mar 14, 2026 · 19:17 UTC
    ESCALATION #5 (230h active): Phishing - xmrwallet[.]me
    abuse@domain.me compliance@icann.org
  6. Report #6 ICANN CC 280h still active Mar 16, 2026 · 21:08 UTC
    ESCALATION #6 (280h active): Phishing - xmrwallet[.]me
    abuse@domain.me compliance@icann.org
  7. Report #7 ICANN CC 504h still active Mar 26, 2026 · 08:29 UTC
    ESCALATION #7 (504h active): Phishing - xmrwallet[.]me
    abuse@domain.me compliance@icann.org
  8. Report #8 ICANN CC 614h still active Mar 30, 2026 · 22:23 UTC
    ESCALATION #8 (614h active): Phishing - xmrwallet[.]me
    abuse@domain.me compliance@icann.org
  9. Report #9 ICANN CC 632h still active Mar 31, 2026 · 16:59 UTC
    ESCALATION #9 (632h active): Phishing - xmrwallet[.]me
    abuse@domain.me compliance@icann.org
Record scope: the timeline documents outgoing records stored by PhishDestroy. Delivery, acknowledgement, and subsequent action require separate recipient or infrastructure evidence.
Технології · 4 identified
PHP
Programming languages

Server-side scripting language designed for web development.

jQuery
JavaScript libraries

Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.

HSTS
Безпека

HTTP Strict Transport Security — forces browsers to use HTTPS connections only.

DDoS-Guard
Detected via Cloudflare Radar · Wappalyzer engine
Поскаржитися на цей домен Надішліть докази та допоможіть захистити інших

Аналіз VirusTotal

3 / 91 постачальників безпеки позначили цей домен
View on VT
Last analyzed Previous stored snapshot: 4 detections
alphaMountain.ai
Fortinet
Gridinsoft

Архівні докази

Wayback Machine Snapshot
Для перегляду доказів доступний історичний знімок
View Archive
Аналіз продуктивності сайту

Google PageSpeed Insights — mobile performance audit of xmrwallet.me · checked Mar 5, 2026

71
Needs Work
Performance
FCP
2.65s
First Contentful Paint
LCP
5.98s
Largest Contentful Paint
CLS
0.053
Cumulative Layout Shift
TBT
20ms
Total Blocking Time
SI
4.54s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

Докази та зовнішні звіти

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-1772687196-xmrwallet.me Recipient: abuse@domain.me
URLScan evidence VirusTotal evidence
Blocklist hits included with submission: SEAL

Чи вплинув на вас цей сайт?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.

Європол
Знайдіть офіційний канал звітності для вашої країни ЄС
National police directory
Остерігайтеся шахраїв, які обіцяють повернути втрачені кошти! Злочинці можуть знову зв’язатися з жертвами, видаючи себе за слідчих, адвокатів або агентів із відновлення. Не сплачуйте авансових зборів і не діліться обліковими даними. Дізнайтеся більше про шахрайство у сфері відшкодування збитків →

Зверніться до місцевих органів влади

Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.

Довідник 97 країн
Чернетка за допомогою штучного інтелекту — деталі інциденту обробляються постачальником штучного інтелекту Перегляньте та подайте його самостійно

Перевірити будь-який домен

Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування

Сканувати зараз

Повідомити про фішинг

Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту

Повідомити

Потокова стрічка про загрози

Останні звіти про фішинг і помічені зміни доступності

Відстежувати

Будьте в курсі подій, дбайте про свою безпеку

Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога

Потокова стрічка про загрози Оскаржити це оголошення
HTML · IFRAME

Вбудувати цей звіт

Поділіться цією інформацією про загрози на своєму веб-сайті або в блозі

embed.html
<iframe
  src="https://phishdestroy.io/uk/embed/domain/xmrwallet.me"
  title="PhishDestroy threat report for xmrwallet.me"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>