mainws[.]cc
Resumo das evidências
This domain, mainws.cc, is identified as a brand impersonation threat specifically targeting users of the Argent cryptocurrency wallet. Analysis indicates the domain was designed to mimic legitimate Argent services, likely to facilitate unauthorized transactions or credential harvesting. The threat type aligns with known crypto drainer campaigns, where victims are tricked into connecting wallets to malicious smart contracts, resulting in fund theft. No direct association with a named drainer kit has been confirmed, but the impersonation tactics and infrastructure are consistent with such operations. Technical indicators reveal multiple red flags. The domain was registered on February 21, 2026, an unusually future date that may indicate an attempt to evade immediate detection or scrutiny. It resolves to the IP address 202.95.22.96, hosted under AS152194 (CTG Server Limited) in Hong Kong. Security vendor detections on VirusTotal stand at 17 out of 95, with one additional blocklist flagging the domain. The SSL certificate, identified as R13, does not provide sufficient trust indicators, further suggesting malicious intent. Google Safe Browsing does not currently list the domain, but this absence does not mitigate the elevated risk posed by the other indicators. As of the latest assessment, mainws.cc has been taken offline, likely in response to security vendor detections and blocklist inclusions. However, the infrastructure associated with the IP and registrar may still pose residual risks. Users who interacted with the domain prior to its deactivation should immediately revoke any wallet permissions granted and monitor accounts for unauthorized transactions. The future-dated registration and targeted impersonation of a crypto wallet brand underscore the need for heightened vigilance among Argent users and the broader cryptocurrency community. Ongoing monitoring of related domains and IP ranges is recommended to preempt potential resurgence or migration of this threat.
Data Coverage
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | mainws.cc |
malicious | Sinkholed |
| DNS0 Zero | mainws.cc |
malicious | Sinkholed |
| OpenDNS | mainws.cc |
phishing | Phishing Block |
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 11/08/2026
10 fontes externas monitoradas Sem correspondência
Análise do VirusTotal
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo