quotedrop[.]to
quotedrop.to — 未验证. 诈骗类型:Crypto Drainer. 证据摘要: VirusTotal 3/94 (Gridinsoft, Seclookup, SOCRadar); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. 注册商: Namecheap.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
quotedrop.to is a recently activated crypto drainer phishing domain detected under seed a67663. This domain is categorized under generic_phishing with an active threat status, indicating ongoing malicious operations. No specific brand is being impersonated in the known intelligence, and no drainer kit has been identified in open-source reporting. The domain’s primary mechanism appears to be luring users into connecting cryptocurrency wallets under false pretenses, likely through social engineering campaigns or spoofed services promising incentives such as token airdrops or NFT mints. The operational timeline suggests a hastily deployed campaign, possibly leveraging urgency or exclusivity to deceive users.
PhishDestroy identifies the following technical indicators associated with quotedrop.to: the domain resolves to a single IP address, 63.176.8.218, and is registered through NAMECHEAP. The domain was created on March 22, 2026, making it extremely new. A Let’s Encrypt SSL certificate is in use, which may be intended to appear legitimate to users. VirusTotal currently shows 0 detections out of 95 security vendors, indicating a low detection rate at this time. Google Safe Browsing (GSB) status and blocklist participation remain unverified or absent in current feeds. The lack of detections, combined with the fresh registration and hosting configuration, suggests this domain is in the early stages of deployment and may not yet be widely recognized by security systems. The seed identifier a67663 links this domain to a controlled tracking entity for ongoing monitoring.
As of the latest assessment, quotedrop.to remains active and is under investigation by PhishDestroy analysts. Given the absence of antivirus detections and the domain’s new registration, immediate user action is advised to avoid interaction. Security teams are encouraged to block the domain at the network level and monitor for associated IP or certificate reuse. The current risk level is classified as under_investigation due to limited telemetry, but the operational behavior aligns with known crypto drainer tactics. Users are strongly advised not to visit, connect wallets, or input credentials on this domain. This domain should be considered actively dangerous until further forensic analysis is completed and threat intelligence is disseminated.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of quotedrop.to · checked Apr 4, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。