Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is complaint@gname.com.
The latest stored availability evidence still shows the domain reachable; 6 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
tangem-wallet[.]cc
“Tangem Wallet App Download | Sign In | Best Crypto Wallet”
tangem-wallet.cc — Неперевірений. Уособлення бренду: Across; Тип шахрайства: Seed Phrase Theft. Зведення доказів: VirusTotal 9/91 (alphaMountain.ai, BitDefender, CyRadar, Forcepoint ThreatSeeker, Fortinet); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 77/100. Реєстратор: Gname.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis indicates that the domain tangem-wallet.cc was registered on August 04, 2026 through Gname.com Pte. Ltd. and currently resolves to the IP address 104.21.88.165. The domain appears on three independent security blocklists, and three of ninety‑one VirusTotal scanners have flagged it as malicious. Additional protective services, including PhishDestroy, MetaMask and SEAL, have listed the domain as blocked, reinforcing the assessment that it is being used as a crypto drainer. The threat type is explicitly identified as a crypto drainer, meaning the infrastructure is likely employed to lure cryptocurrency users into submitting private keys or signing malicious transactions, resulting in asset loss.
Infrastructure analysis reveals a single hosting endpoint, suggesting a low‑profile deployment that may be shared with other illicit sites. No public SSL certificate details, HTTP response codes, or page title information are available at this time, limiting visibility into the exact content served. The presence on multiple blocklists and the detection by several VirusTotal engines provide concrete evidence of malicious intent, while the lack of broader telemetry leaves open questions about the scale of victim outreach and any additional supporting infrastructure.
Defenders should add tangem-wallet.cc to deny‑list rules across DNS filtering, proxy, and endpoint protection solutions. Monitoring of traffic to 104.21.88.165 for anomalous connection patterns is advised, as is the implementation of user awareness campaigns that warn against unsolicited requests for wallet credentials. Continued observation of the domain’s status on blocklists and any future VirusTotal scans will help refine the risk posture.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 3 identified
Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of tangem-wallet.cc · checked Aug 7, 2026
Аналіз конфігурації сайту
Докази та зовнішні звіти
PD-20260807-E046E8 Recipient: complaint@gname.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога