buybtr.shop
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of buybtr.shop
buybtr.shop appears to present itself as a cryptocurrency or decentralized-finance project centered on a token called “BTR Token.” The homepage text promotes cross-chain compatibility, asset trading, and decentralized finance features, with navigation items such as Home, About, Rates, Buy BTR, Features, and Partners. Based on the page title, metadata, and visual design, the site appears intended to attract users interested in token purchases or blockchain-based financial products.
The domain name and homepage call-to-action suggest the site’s main purpose may be to encourage visitors to buy or interact with the BTR token. The operator is not clearly identified in the provided scan data, and no established organizational background is visible from the screenshot alone. The site falls most naturally into the cryptocurrency / financial-services space, although some classification sources also associate it with phishing-related activity.
Safety Assessment for buybtr.shop
This domain shows several cautionary indicators at the time of this scan. It was flagged by 5 out of 91 security engines, with multiple detections describing the site as phishing-related, while other web-classification sources labeled it as financial services. At the same time, the malware scan did not identify malicious files, and major content-malice and threat-database checks in the provided data did not report active listings.
Even so, the domain is extremely new at only 17 days old, has no established traffic ranking in the provided data, and appears to solicit interaction with a cryptocurrency token purchase flow. Newly registered financial or crypto-themed domains can carry elevated risk because fraudulent campaigns often rely on short-lived infrastructure. The mixed signals here mean the absence of detected malware files should not be treated as a clean bill of health.
Based on these findings, this website may pose potential risks to visitors, particularly those considering financial transactions or wallet interactions. The published trust score of 30/100 is broadly consistent with the combination of multi-engine phishing flags, very recent registration, and the site’s financial theme.
Technical Description
The site uses a valid SSL/TLS certificate issued by Google Trust Services, with expiration listed as 2026-09-03. It is served through Cloudflare infrastructure on IP address 188.114.96.2, with Cloudflare nameservers and hosting geolocated in Toronto, Canada in the provided scan data. DNSSEC appears to be unsigned.
From a technical standpoint, the use of HTTPS and a mainstream reverse-proxy/CDN setup is common and does not by itself indicate legitimacy or abuse. No malicious files, flagged external links, or iframes were identified in the supplied scan results, but the lack of DNSSEC and the domain’s very recent creation date are modest cautionary factors when combined with phishing-related detections.
Share your experience with this website. Was it safe? Did you encounter any issues?