MALICIOUS — CRITICAL
Перевірка домену testwallet.live на фішинг і безпеку
testwallet[.]
Analysis of testwallet.live indicates a high-risk crypto drainer domain active as of July 28, 2026.
- VirusTotal
- 15/91
- Blocklists
- No stored match
- Доступність
- Останній відомий активний · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
testwallet.live — Останній відомий активний (HTTP 200). Тип шахрайства: Crypto Drainer. Зведення доказів: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); Spamhaus DBL_PHISH; PhishDestroy score 100/100. Реєстратор: GoDaddy.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
Analysis of testwallet.live indicates a high-risk crypto drainer domain active as of July 28, 2026. The domain is flagged by 15 of 91 security vendors on VirusTotal, confirming malicious classification by multiple detection engines. It appears on one security blocklist and is blocked by PhishDestroy, further validating its threat status.
The domain returns an HTTP 200 status, suggesting it is operational and serving content. Infrastructure analysis reveals registration through GoDaddy.com, LLC, with nameservers ns11.domaincontrol.com and ns12.domaincontrol.com, a common hosting pattern for malicious domains leveraging GoDaddy’s infrastructure. No additional details regarding the specific crypto drainer kit, targeted wallets, or associated campaigns are available in the current intelligence.
Defenders should treat this domain as active and malicious, prioritizing blocking at the DNS or proxy level to prevent user interaction. Given the domain’s registration and hosting provider, monitoring for newly registered domains under the same nameservers or registrar may help identify related threats. The exact content of the site remains unanalyzed, but the combination of detection vendor alerts and blocklist presence confirms its role in crypto theft operations.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Обсяг даних13 recorded checks
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звітиIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.