txsamm-coin[.]top
“amm”
txsamm-coin.top — Контент недоступен (HTTP 502). Олицетворение бренда: Trust Wallet; Тип мошенничества: Brand Impersonation. Сводка доказательств: VirusTotal 11/95 (alphaMountain.ai, BitDefender, CyRadar, ESET, Forcepoint ThreatSeeker); PhishDestroy score 83/100. Регистратор: Gname.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain txsamm-coin.top is identified as a brand impersonation threat specifically targeting Trust Wallet, a widely used cryptocurrency wallet service. Analysis confirms this domain was designed to deceive users into interacting with fraudulent interfaces, likely facilitating unauthorized asset transfers or credential theft. As of the latest assessment, the domain has been taken offline, though prior activity remains a concern for historical exposure. Infrastructure analysis reveals the domain was registered on December 16, 2024, through Gname.com Pte. Ltd., a registrar frequently associated with high-risk registrations. It resolves to the IP address 188.114.97.3, hosted under AS13335 (Cloudflare, Inc.), a network commonly leveraged to obscure malicious infrastructure. The domain lacks an SSL certificate, a red flag for secure communication, and appears on one security blocklist. VirusTotal detection metrics indicate 11 of 95 security vendors flagged the domain as malicious, reinforcing its classification as a credible threat. Current status confirms txsamm-coin.top is offline, reducing immediate risk of direct interaction. However, the domain’s historical activity and infrastructure characteristics warrant continued vigilance. Users who may have engaged with this domain are advised to immediately revoke any connected wallet permissions, monitor transaction histories for unauthorized activity, and verify the authenticity of any crypto-related communications. Organizations should update blocklists to include this domain and its associated indicators, such as the IP address 188.114.97.3, to prevent future exposure. Proactive monitoring of newly registered domains with similar naming patterns (e.g., combining crypto-related terms with brand names) is recommended to mitigate comparable threats.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание