The “Toncoin (TON) Bonus Rewards” page (e.g. tonnelfastspin[.]live
) is a sophisticated scam mimicking TON Foundation’s official website. Users are lured with promises of free TON coins in exchange for connecting their crypto wallets—only to have funds drained moments later. This is a classic phishing/scam threat designed to steal cryptocurrency.
Threat Overview
Category | Details |
---|---|
Threat type | Phishing / Scam / Social Engineering |
Associated domain | tonnelfastspin[.]live |
Detection names | alphaMountain.ai, Combo Cleaner, ESET, Google Safe Browsing, Webroot, etc. |
Symptoms of infection | Fake TON UI, wallet connection prompt, “spin to get rewards” offer |
Damage / Distribution | Crypto theft via wallet-draining smart contracts; distributed through fake ads, social media posts, rogue websites |
Danger level | High—irreversible cryptocurrency loss |
Removal tool | SpyHunter – download link |
Detailed Evaluation
How I Got Infected
Typically, users arrive via misleading ads, social media posts, or links from compromised accounts. These routes redirected them to a pseudo-TON site urging them to connect wallets to “claim bonus rewards.”
What It Does
Once a wallet is connected, a malicious smart contract silently executes, transferring the user’s crypto holdings to attacker-controlled wallets. Because blockchain transactions are final, recovery is virtually impossible.
Should You Be Worried?
Absolutely. Given the irreversible nature of crypto transfers and the sophisticated impersonation of official platforms—including cloned UI and domain—they’re engineered for success. Always verify domains, skip unsolicited “free coins” offers, and never connect wallets unless absolutely certain.
Scam Message
The scam generally displays something like:
“Connect your wallet to claim your Toncoin Bonus Rewards. Limited time only! Spin now for free TON!”
This social-engineering tactic pushes users into granting permissions to a draining smart contract.
Eliminating Crypto Scam Threats
Step 1: Identify and Report the Scam
- Gather evidence (screenshots, emails, transaction IDs).
- Report the fraud to:
- Your crypto exchange (Binance, Coinbase, Kraken, etc.).
- Law enforcement agencies like the FBI’s IC3 (ic3.gov) or the SEC (sec.gov/tcr).
- The Federal Trade Commission (reportfraud.ftc.gov).
- Blockchain explorers (like Etherscan) to check your wallet transactions.
Step 2: Uninstall Suspicious Software & Apps
- On Windows: Open Control Panel > Programs & Features → Find & Uninstall suspicious programs.
- On macOS:Go to Finder > Applications → Drag unwanted apps to Trash.
- On Android & iOS: Go to Settings > Apps → Uninstall fake crypto wallets or trading apps.
Step 3: Remove Malicious Browser Extensions
- Google Chrome:
- Open
chrome://extensions/
- Remove any unfamiliar or crypto-related suspicious add-ons.
- Open
- Firefox / Edge / Safari:
- Go to browser settings > extensions → Delete suspicious ones.
- Clear browser cache & cookies:
- Open browser settings → Privacy → Clear browsing data.
Step 4: Secure Your Accounts & Wallets
Change passwords immediately for:
- Crypto wallets
- Exchanges
- Email & social media
Enable Two-Factor Authentication (2FA):
- Use Google Authenticator, YubiKey, or Authy.
Move remaining funds to a secure wallet:
- Use a hardware wallet (Ledger, Trezor) instead of online wallets.
Step 5: Scan for Hidden Malware & Keyloggers
Your system may still have spyware, tracking your keystrokes or redirecting you to scam sites. A deep scan is essentialto detect and remove threats.
⏳ For a thorough malware check, use SpyHunter. (See Method 2 below.)
Automatic Removal with SpyHunter
If you suspect hidden malware, SpyHunter can detect and remove crypto scam-related malware, trojans, and browser hijackers.
Step 1: Download SpyHunter
Follow SpyHunter installation instructions here: SpyHunter Download Guide
Step 2: Install and Run SpyHunter
- Run the SpyHunter installer.
- Follow the on-screen installation steps.
- Launch SpyHunter after installation.
Step 3: Perform a Full Malware Scan
- Click “Start Scan Now”.
- Let SpyHunter scan for:
- Crypto-stealing malware
- Browser hijackers redirecting to fake exchanges
- Phishing-related spyware
Step 4: Remove All Detected Threats
- Click “Fix Threats” to eliminate malicious programs.
- Restart your system to complete the cleanup.
Step 5: Enable Real-Time Protection for Future Security
Activate SpyHunter’s real-time protection to:
- Block phishing & scam websites
- Prevent future infections
- Monitor system vulnerabilities
Proactive Prevention: How to Avoid Crypto Scams
- NEVER share your private keys or seed phrases – even with “support teams.”
- Always verify URLs before logging in to exchanges.
- Use only official wallet apps from trusted sources.
- Ignore unsolicited investment offers via Telegram, Discord, and social media.
- Check for HTTPS & security certificates before entering login details.
- Regularly scan your device for hidden malware and spyware.
- Store crypto in a hardware wallet (Ledger, Trezor) rather than online wallets.
Conclusion
The “Toncoin (TON) Bonus Rewards” scam is a dangerous deception built to steal your cryptocurrency via fake wallet connection prompts. Always double-check domains (ton.org
is the only trustworthy one), ignore unsolicited bonus offers, and treat unexpected wallet-connection requests as high-risk. If compromised, using a reliable tool like SpyHunter is recommended—but prevention remains your strongest defense.