conchocoins.digital
“Nur einen Moment…”
conchocoins.digital — 隐形 · 可达 (HTTP 403). 品牌冒充:Unknown; 诈骗类型:Impersonation. 证据摘要: VirusTotal 3/91 (alphaMountain.ai, CRDF, Gridinsoft); cloaking observed; PhishDestroy score 91/100. 注册商: Cloudflare.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
证据摘要
The domain conchocoins.digital is a generic phishing site that does not impersonate a specific brand or employ a known drainer kit. It poses an elevated risk by attempting to deceive visitors into disclosing sensitive information or credentials through fraudulent means. As of the latest verification, conchocoins.digital has been taken offline, though prior activity indicates it was actively used for phishing.
Technical indicators confirm conchocoins.digital was flagged by 3 of 95 VirusTotal security vendors, including alphaMountain.ai, Gridinsoft, and SOCRadar. It appears on 1 security blocklist (PhishDestroy) and was registered through Cloudflare, Inc. The domain resolved to the IP address 188.114.96.3, hosted on Cloudflare's network (AS13335) in the US, and used an SSL certificate issued by Google Trust Services / WE1. The observed page title was 'Nur einen Moment…', and the site employed Cloudflare technologies, including HTTP/3. AlienVault OTX recorded the domain in 1 threat intelligence pulse, while Google Safe Browsing did not flag it.
Individuals who interacted with conchocoins.digital should immediately change any credentials entered on the site and enable two-factor authentication (2FA) on affected accounts. Monitor financial and login activity for signs of fraud, and consider reporting the domain to platforms like Google Safe Browsing, PhishTank, or local cybersecurity authorities. If cryptocurrency transactions were involved, revoke any token approvals and transfer funds to a new wallet to mitigate potential losses.
Forensic History & Detection Timeline
-
Cloudflare Radar Scan Mar 7, 2026 · 12:47 UTCCloudflare Radar scan registered: View Radar report.
-
Domain Status Transition Feb 28, 2026 · 02:03 UTCDomain state transitioned from alive to dead.
威胁响应 Pipeline
公共封禁名单状态
Evasion evidence
Cloaking confirmed: scanners and victims see different content
The page served one response to a browser-like visitor and another to a crawler or security scanner. Cloaking exists only to keep reviewers away from the real landing page.
- Stored cloaking flag
- Observed
- 伪装类型
status_split- 伪装评分
- 4/6
- Last cloaking scan
- Server header seen by scanner
cloudflare
Scanner note: cloudflare_challenge: raw=cf_challenge; http=403; via=https_proxy; server=cloudflare
已保存的截图 · 2 sources
域名情报
技术详情DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
技术 · 2 identified
VirusTotal 分析
存档证据
社区报告
由 1 名社区成员报告;首次发现于 2025年12月5日
- 已存储报告
- 1
- 已报告的唯一 URL
- 1
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。