MALICIOUS — CRITICAL
Перевірка домену brasshold.com на фішинг і безпеку
brasshold[.]
The domain brasshold.com has been confirmed as a crypto wallet drainer site, designed to siphon cryptocurrency assets from unsuspecting users.
- VirusTotal
- 6/91
- Blocklists
- 2 · MetaMask, SEAL
- Доступність
- Останній відомий активний · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@namecheap.com.
The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
Jump to section
brasshold.com — Останній відомий активний (HTTP 200). Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 6/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 85/100. Реєстратор: NameCheap.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
The domain brasshold.com has been confirmed as a crypto wallet drainer site, designed to siphon cryptocurrency assets from unsuspecting users. Analysis indicates the domain is currently offline, though it previously exhibited active malicious infrastructure. This threat type specifically targets digital wallet credentials and private keys, enabling unauthorized transactions and asset theft. Infrastructure analysis reveals the domain was registered through NameCheap, Inc. on April 08, 2026, and resolved to the IP address 172.67.203.176. Security vendors flagged the domain in 6 of 95 VirusTotal scans, while Gridinsoft assigned a trust score of 0 out of 100. The domain appears on three distinct security blocklists and was blocked by multiple threat intelligence platforms. The SSL certificate was issued by Let's Encrypt, a common tactic observed in phishing campaigns to mimic legitimacy. Given the domain's current offline status, it may represent a temporary takedown or a shift in malicious infrastructure. Users are advised to treat any prior interactions with brasshold.com as compromised. Immediate actions include revoking wallet permissions, monitoring transaction histories for unauthorized activity, and verifying domain authenticity before engaging with cryptocurrency-related platforms. Organizations should update blocklists to include this domain and its associated indicators of compromise.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Обсяг даних12 recorded checks
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Криміналістичні дані
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of brasshold.com · checked Jun 26, 2026
Аналіз конфігурації сайту
Докази та зовнішні звітиIndependent lookups and source reports
PD-20260408-F0E53A Recipient: abuse@namecheap.com Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.