A new phishing scam mimics the official Qubetics presale site—but it targets crypto wallets. A fake domain (e.g. qubetics-ia.web[.]app) tricks users into connecting their Web3 wallets. Once connected, malicious contracts siphon off funds silently. A recent victim lost all tokens without any trace. These drainers hide behind polished designs, making early detection vital.
Threat Overview
Threat Type:
Cryptocurrency drainer (phishing scam)
Related Domains:
qubetics-ia.web[.]app (and others)
Detection Names:
Kaspersky (Phishing), VirusTotal
Symptoms:
Unauthorized wallet drains, unexpected contract approvals
Damage:
Complete loss of connected wallet funds
Distribution Methods:
Compromised websites, malvertising pop-ups, social media spam, rogue ads
Severity:
High
Removal Tool:
SpyHunter via Combo Cleaner link
In-Depth Analysis
Infection Vector
- Click-through from intrusive ads or pop-ups promising presale or exclusive airdrop access
- Redirects from hacked websites
- Social media spam/DMs linking to malicious domains
Behavioral Profile
- Victim lands on a cloned Qubetics website
- Prompt appears: “Connect your wallet to claim tokens”
- Wallet interaction triggers a malicious smart contract approval
- Automated script initiates fund drainage
- Victim notices missing balance—too late for refunds
Risk Assessment
Financial loss is immediate and unrecoverable.
A single misclick or confirmation can lead to wipeout.
Crypto drainers have cost users over $1 billion since 2021.
Real-world case: a user connected via phishing link, confirmed gas fees—and the site drained the full wallet. No recovery possible.
Artifact Text
“Connect your wallet to claim your TICS tokens. Be sure to approve the smart contract to receive exclusive presale bonuses.”
Eliminating Crypto Scam Threats
Step 1: Identify and Report the Scam
- Gather evidence (screenshots, emails, transaction IDs).
- Report the fraud to:
- Your crypto exchange (Binance, Coinbase, Kraken, etc.).
- Law enforcement agencies like the FBI’s IC3 (ic3.gov) or the SEC (sec.gov/tcr).
- The Federal Trade Commission (reportfraud.ftc.gov).
- Blockchain explorers (like Etherscan) to check your wallet transactions.
Step 2: Uninstall Suspicious Software & Apps
- On Windows: Open Control Panel > Programs & Features → Find & Uninstall suspicious programs.
- On macOS:Go to Finder > Applications → Drag unwanted apps to Trash.
- On Android & iOS: Go to Settings > Apps → Uninstall fake crypto wallets or trading apps.
Step 3: Remove Malicious Browser Extensions
- Google Chrome:
- Open
chrome://extensions/
- Remove any unfamiliar or crypto-related suspicious add-ons.
- Open
- Firefox / Edge / Safari:
- Go to browser settings > extensions → Delete suspicious ones.
- Clear browser cache & cookies:
- Open browser settings → Privacy → Clear browsing data.
Step 4: Secure Your Accounts & Wallets
Change passwords immediately for:
- Crypto wallets
- Exchanges
- Email & social media
Enable Two-Factor Authentication (2FA):
- Use Google Authenticator, YubiKey, or Authy.
Move remaining funds to a secure wallet:
- Use a hardware wallet (Ledger, Trezor) instead of online wallets.
Step 5: Scan for Hidden Malware & Keyloggers
Your system may still have spyware, tracking your keystrokes or redirecting you to scam sites. A deep scan is essentialto detect and remove threats.
⏳ For a thorough malware check, use SpyHunter. (See Method 2 below.)
Automatic Removal with SpyHunter
If you suspect hidden malware, SpyHunter can detect and remove crypto scam-related malware, trojans, and browser hijackers.
Step 1: Download SpyHunter
Follow SpyHunter installation instructions here: SpyHunter Download Guide
Step 2: Install and Run SpyHunter
- Run the SpyHunter installer.
- Follow the on-screen installation steps.
- Launch SpyHunter after installation.
Step 3: Perform a Full Malware Scan
- Click “Start Scan Now”.
- Let SpyHunter scan for:
- Crypto-stealing malware
- Browser hijackers redirecting to fake exchanges
- Phishing-related spyware
Step 4: Remove All Detected Threats
- Click “Fix Threats” to eliminate malicious programs.
- Restart your system to complete the cleanup.
Step 5: Enable Real-Time Protection for Future Security
Activate SpyHunter’s real-time protection to:
- Block phishing & scam websites
- Prevent future infections
- Monitor system vulnerabilities
Proactive Prevention: How to Avoid Crypto Scams
- NEVER share your private keys or seed phrases – even with “support teams.”
- Always verify URLs before logging in to exchanges.
- Use only official wallet apps from trusted sources.
- Ignore unsolicited investment offers via Telegram, Discord, and social media.
- Check for HTTPS & security certificates before entering login details.
- Regularly scan your device for hidden malware and spyware.
- Store crypto in a hardware wallet (Ledger, Trezor) rather than online wallets.
Conclusion
The fake Qubetics site is a sophisticated crypto wallet drainer. It leverages trust in the authentic project to fool users into granting permissions. Once connected, the drain begins—irreversible and silent.
Protect yourself by:
- Never approving wallet interactions from unknown domains
- Manually verifying URLs (avoid "qubetics‑ia.web.app")
- Using reputable wallet tools with phishing filters
- Keeping antivirus and browser defenses up-to-date
Early detection prevents irreversible losses. Doubt? Disconnect wallet immediately and assume it's malicious.