artichaud.brussels
“Account Suspended”
Evidence Summary
Analysis of the domain artichaud.brussels confirms it as a site hosting generic phishing content. The domain does not appear to be associated with a specific brand or drainer kit, indicating a broad-based phishing campaign designed to capture a wide range of sensitive information from unsuspecting users. The threat level is assessed as elevated due to the domain's presence on multiple security blocklists and its high detection rate by security vendors.
Technical indicators reveal that the domain artichaud.bruelles has been flagged by 14 out of 95 security vendors on VirusTotal, suggesting significant malicious activity. The domain is registered through Combell nv, a registrar based in Belgium, and resolves to the IP address 41.185.8.68, which is located in South Africa (AS36943 1 GRID (PTY) LTD). The domain was created on January 20, 2015, and is currently listed as taken offline by both PhishDestroy and PhishingDB, indicating that it has been identified and taken down as part of a coordinated response to mitigate the threat.
The current status of artichaud.brussels is offline, reducing the immediate risk to potential victims. However, the domain's infrastructure and association with known malicious IP addresses indicate that it may be reactivated or used in future campaigns. Security researchers and network administrators are advised to monitor for any signs of reactivation and to ensure that appropriate security measures are in place to detect and block similar threats. The domain's presence on multiple blocklists and the high detection count by security vendors underscore the importance of ongoing vigilance in protecting users from phishing attacks.
Security Signals
Network Security Intelligence
Forensic History & Detection Timeline
-
Domain Status Transition Jul 28, 2026 · 00:19 UTCDomain state transitioned from dead to alive.
-
Domain Status Transition Jul 28, 2026 · 00:06 UTCDomain state transitioned from alive to dead.
-
VirusTotal Detections Update Mar 6, 2026 · 04:21 UTCVirusTotal scanner detections updated from 13 to 14. Added scanner alerts: Seclookup.
-
VirusTotal Detections Update Mar 2, 2026 · 17:49 UTCVirusTotal scanner detections updated from 14 to 13. Resolved alerts: Seclookup.
Threat Response Pipeline
Public Blocklist Status
Evasion analysis
Cloaking & traffic-distribution check
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
- Stored cloaking flag
- Not yet scanned
- Last cloaking scan
- Server header seen by scanner
nginx
Scanner note: empty_body: raw=empty_body; http=200; via=http_proxy; server=nginx
Stored Capture · 2 sources
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies · 2 identified
VirusTotal Analysis
Archived Evidence
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of artichaud.brussels · checked Mar 2, 2026
Community reports
Reported by 1 community member, first seen Oct 18, 2025
- Stored reports
- 1
- Unique reported URLs
- 1
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive