stellarcoin-stb[.]cc
“Suspected phishing site | Cloudflare”
证据摘要
This domain, stellarcoin-stb.cc, operates as a credential harvesting site specifically designed to target cryptocurrency wallet users. Analysis indicates the infrastructure presents fraudulent login interfaces mimicking legitimate Stellar-based platforms, with the intent to capture seed phrases, private keys, or account credentials. The phishing pages are served under the guise of wallet recovery or token airdrop schemes, a common tactic in cryptocurrency-related fraud. Infrastructure analysis reveals the domain was registered on July 19, 2025, through NICENIC INTERNATIONAL GROUP CO., LIMITED, and currently resolves to the IP address 172.67.128.34, hosted on Cloudflare's network (AS13335). Security vendor detections on VirusTotal stand at 5 out of 95, while the domain appears on one security blocklist. The SSL certificate is classified as WE1, a low-trust indicator often associated with short-lived or disposable domains. Cloudflare's interstitial warning page, titled 'Suspected phishing site,' further corroborates the malicious classification. Users who have interacted with stellarcoin-stb.cc should immediately revoke any permissions granted to connected applications or browser extensions. All credentials entered on the site must be considered compromised and should be changed from a secure device. Cryptocurrency wallets used on the site should be migrated to new addresses, and any associated seed phrases or private keys must be discarded. Network-level blocking of the domain and its resolving IP (172.67.128.34) is recommended to prevent further exposure. Monitoring for unauthorized transactions or account access attempts is advised for a minimum of 30 days post-exposure.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月13日
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控