wallet[.]mymonero[.]co
“MyMonero Wallet — Fast, Private Monero (XMR) for Web”
wallet.mymonero.co — 内容不可用 (HTTP 502). 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 3/95 (ADMINUSLabs, Fortinet, SOCRadar); PhishDestroy score 65/100. 注册商: Tucows.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain wallet.mymonero.co was a crypto drainer phishing site designed to steal cryptocurrency by tricking users into connecting their wallets. Unlike typical brand impersonation, this site did not mimic a specific legitimate service but instead presented itself as a standalone Monero (XMR) wallet platform. As of the latest verification, wallet.mymonero.co has been taken offline, though it previously posed an elevated risk to users who may have interacted with it.
Technical analysis reveals that wallet.mymonero.co was flagged by 3 of 95 security vendors on VirusTotal, including ADMINUSLabs, Fortinet, and SOCRadar. The domain was registered through Tucows Domains Inc. on October 05, 2025, and resolved to the IP address 188.114.96.3, hosted on Cloudflare's infrastructure (AS13335). It appeared on one security blocklist, PhishDestroy, and used an SSL certificate issued by Google Trust Services (WE1). The observed page title was 'MyMonero Wallet — Fast, Private Monero (XMR) for Web,' and technologies detected included Plesk, Yandex.Metrika, Cloudflare, and HTTP/3. Gridinsoft assigned the domain a trust score of 0/100.
Users who connected a wallet to wallet.mymonero.co should immediately revoke all token approvals and transfer any remaining funds to a new, secure wallet. If credentials or private keys were entered, they should be considered compromised. Victims are advised to report the incident to their wallet provider, local cybercrime authorities, and platforms like Google Safe Browsing or the Anti-Phishing Working Group. Monitoring accounts for unauthorized transactions and enabling two-factor authentication on all related services is strongly recommended.
威胁响应 Pipeline
公共封禁名单状态
滥用举报历史 · 2 stored reports over 3 days · click to expand
-
Report #1 Feb 18, 2026 · 23:39 UTCPhishing Abuse Report: wallet[.]mymonero[.]coabuse@registry.godaddy
-
Report #2 ICANN CC 51h still active Feb 21, 2026 · 02:58 UTCESCALATION #2 (51h active): Phishing - wallet[.]mymonero[.]coabuse@registry.godaddy compliance@icann.org
所用技术 · 4 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of wallet.mymonero.co · checked Mar 2, 2026
证据与外部报告
“Blacklist from EtherAddressLookup Database”
PD-1771457985-wallet.mymonero Recipient: abuse@registry.godaddy 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。