gravvest[.]xyz
“Welcome to Gravvest”
gravvest.xyz — Контент недоступен. Олицетворение бренда: Base; Тип мошенничества: Brand Impersonation. Сводка доказательств: VirusTotal 2/95 (alphaMountain.ai, Forcepoint ThreatSeeker); PhishDestroy score 56/100. Регистратор: Global Domain Group.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, gravvest.xyz, is identified as a brand impersonation threat, specifically targeting the 'base' brand. The domain poses an elevated risk due to its potential to deceive users into believing they are interacting with legitimate 'base' services, which could lead to the compromising of personal information, financial data, and credentials. Users are advised to take immediate action if they have visited this site.
Analysis indicates that gravvest.xyz has been flagged by 4 out of 95 security vendors on VirusTotal. The domain was registered through Global Domain Group LLC on July 18, 2025, and currently appears on 1 security blocklist. The low Gridinsoft trust score of 0/100 further corroborates the malicious nature of this domain. The IP address 107.173.193.235, to which the domain resolves, has not been reported for any other malicious activities, but its association with this domain raises concerns. The domain was taken offline as of the latest check, which may indicate that the threat actors have ceased operations or that it has been shut down by authorities.
Users who have visited gravvest.xyz are advised to change their passwords for 'base' accounts immediately and monitor their accounts for any unauthorized activity. Additionally, they should run a full system scan using updated antivirus software to ensure their devices have not been compromised. It is crucial for users to remain vigilant and verify the authenticity of any website that appears to be associated with 'base' or similar brands before entering any sensitive information. Organizations are recommended to educate their employees on the signs of brand impersonation and the importance of verifying URLs and domain registration details.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание