Alpha Brain // Intelligence
AI Intelligence Center
Created & powered by
ScamWatch × Nova
ONLINE
REASONING
ScamWatch × Nova ↗
← Terminal
Live reasoning stream
▸
Cross-referencing 4,812 domain registrations against known phishing kits…
Active Objectives
12
Threats Tracked
2,481
Blocked (24h)
937
Scans / min
1.4k
87%
System Confidence
Intelligence Pipeline
Real-time data flow through the reasoning engine
live
Stage 1
Data Collection
→
Stage 2
Signal Processing
→
Stage 3
Pattern Recognition
→
Stage 4
Threat Classification
→
Stage 5
AI Reasoning
→
Stage 6
Risk Assessment
→
Stage 7
Recommendation
Knowledge Graph
Relationships between actors, domains, wallets, and infrastructure
live
APT-Nebula-7
invest-vault.io
0xf7c2…
88.129.4.12
support@moon…
clipper.exe
airdrop-safe.net
0xa1b3…
meta-claim.xyz
actor
domain
wallet
email
ip
malware
Threat Relationship Map
Force-directed cluster of infrastructure & attackers
live
26 entities · 41 edges · updating
Pattern Recognition
Live-evolving threat clusters
live
Phishing · fake-support
148
+12 24h
Rug-pull · new-launch
87
+5 24h
Impersonation · brand
63
+2 24h
Malicious domains · TLS-reuse
214
+31 24h
Fake investment platforms
96
+7 24h
Crypto giveaway scams
178
+18 24h
Probability Engine
Confidence distribution & risk decomposition
live
Malicious
72%
Suspicious
21%
Benign
7%
Risk score
8.4
Uncertainty
0.12
Evidence
37
Models agree
96%
AI Confidence Dashboard
Model diagnostics & decision quality
live
AI Confidence
92%
Detection Accuracy
97%
False Positive Risk
4%
Evidence Strength
88%
Threat Severity
74%
Model Agreement
96%
7 active models · gemini · gpt · nebula-brain
System Health
Runtime diagnostics
live
Processing
42%
Memory
61%
Queue
128
Scans / min
1,428
Finnhub
● OK
Onchain feed
● OK
Threat DB
● OK
Model Gateway
● OK
Live Intelligence Feed
Streaming discoveries
live
Threat Timeline
Evolution of a live incident
live
T-6h
First observation · domain airdrop-safe.net registered
conf 34%
T-5h
TLS fingerprint match with 2024 phishing kit
conf 58%
T-4h
Wallet 0xf7c2 receives seed funding from mixer
conf 66%
T-3h
Impersonation content copied from official brand
conf 78%
T-2h
Cluster linked to APT-Nebula-7 with 88% confidence
conf 88%
T-1h
3 additional lookalike domains found (same registrar)
conf 92%
NOW
AI recommends: escalate + block · notify subscribers
conf 96%
Threat Intelligence Database
Stored, searchable, free to copy — wallets, scams, impersonations & more
live
Copy all (JSON)
View more on ScamWatch × Nova ↗
All
Wallet
Contract
Domain
Email
Phone
Social
Impersonation
Scam campaign
18 / 18 records
critical
Wallet
0xf7c2a91b3ce8d4a1907e5b62d9f0aa19b7c14e02
Ethereum
184★
▸
critical
Wallet
0xa1b3c9f0d24e78115ba9c67f8213cd45e6091a77
Ethereum
96★
▸
high
Wallet
TQrZ9k2vJ8mYh5aBcD1fEuGpNoLiKjHgFe
Tron
71★
▸
high
Wallet
9xQpV3nZ7kR2mYbCdEfGhJiKlMnOpQrStUvWxYz1234
Solana
44★
▸
critical
Contract
0x88b1a4c5d6e7f8091a2b3c4d5e6f7089abc12345
BSC
58★
▸
high
Contract
0x33f9a1b2c8d0e1f2a3b4c5d6e7f8091a2b3c4d5e
Cronos
27★
▸
critical
Domain
invest-vault.io
213★
▸
critical
Domain
airdrop-safe.net
148★
▸
high
Domain
meta-claim.xyz
84★
▸
high
Domain
binance-verify-support.help
65★
▸
high
Email
support@moon-claim.help
41★
▸
medium
Email
compliance@coinbaze-security.com
22★
▸
medium
Phone
+1 415-555-0139
18★
▸
high
Social
@nebula_support
62★
▸
high
Social
@vitalik_giveaway_2026
214★
▸
critical
Impersonation
MetaMask Support (fake)
302★
▸
critical
Impersonation
Ledger Live 'update' popup
141★
▸
critical
Scam campaign
Cluster: 'moonshot-airdrop'
488★
▸
All records public & free · dataset stored & maintained by
ScamWatch × Nova
AI Memory
Long-term recall of entities & incidents — free to copy
live
6 stored entities · public dataset
Copy all
domain
invest-vault.io
Copy
seen 41 days ago · linked to 3 wallets
wallet
0xf7c2…a19b
Copy
3 prior rug-pulls · $184k moved
email
support@moon-claim.help
Copy
used across 12 phishing sites
phone
+1 415-555-0139
Copy
6 impersonation reports
domain
airdrop-safe.net
Copy
new · shares TLS fp with 14 sites
social
@nebula_support
Copy
cloned handle · reported 22×
Threat intel powered by
ScamWatch × Nova
AI Explainability
Why the brain reached this conclusion
live
Conclusion
Domain classified MALICIOUS · confidence 92%
Supporting evidence
TLS fp reuse (14 sites) · funding from mixer · brand impersonation
Similar prior cases
Q3-2024 'yield-vault' cluster · Q1-2025 'metaclaim' incident
Alternative possibility
Legitimate rebrand — probability 4% (low, no whois continuity)
Risk factors
Financial loss, credential theft, wallet drainer script embedded
Recommended action
Escalate to takedown + push subscriber alert
← Back to Terminal
·
Alpha Brain · Intelligence Center
·
Created & powered by ScamWatch × Nova ↗
·
All threat data is public & free to copy