claims[.]fogohub[.]xyz
“Fogo | The fastest layer 1 blockchain”
claims.fogohub.xyz — المحتوى غير متوفر. انتحال العلامة التجارية: Genericcrypto; نوع الاحتيال: Crypto Scam. ملخص الأدلة: VirusTotal 3/93 (Gridinsoft, SOCRadar); URLQuery 1 alert; URLScan malicious verdict; 1 external blocklist match (ScamSniffer); PhishDestroy score 65/100. مسجّل النطاق: PDR.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Analysis of claims.fogohub.xyz indicates a crypto drainer phishing domain targeting users with a fraudulent airdrop scam. The domain was registered on February 21, 2026, through PDR Ltd. d/b/a PublicDomainRegistry.com and is currently offline. Infrastructure analysis reveals Cloudflare-hosted nameservers (elliott.ns.cloudflare.com and vera.ns.cloudflare.com) resolving to IP address 188.114.96.3, associated with AS13335 (Cloudflare, Inc.) in the United States. No SSL certificate is present, increasing the risk of unencrypted data interception. The page title, 'Fogo | The fastest layer 1 blockchain,' suggests an attempt to impersonate a legitimate blockchain project, though no confirmed brand association is established beyond this title.
The domain appears on two security blocklists and is actively blocked by PhishDestroy and ScamSniffer. Gridinsoft assigns a trust score of 0/100, reinforcing its malicious classification. VirusTotal reports three detections from 93 security vendors, though the absence of broader scanning data limits definitive conclusions. The domain's registration details, hosting provider, and blocklist presence align with known crypto drainer infrastructure patterns, where attackers lure victims into connecting wallets to malicious smart contracts.
Defenders should treat this domain as high-risk for crypto-related fraud. Recommended actions include maintaining blocklist entries, monitoring for re-registration under similar domains, and alerting users to the airdrop scam vector. Further investigation into associated wallet addresses or smart contracts is advised to trace stolen assets. Given the domain's current offline status, continuous monitoring for reactivation or domain resale is critical.
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | claims.fogohub.xyz |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
Registration: fogohub.xyz
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain fogohub.xyz behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
الأدلة والتقارير الخارجية
PD-1769262378-claims.fogohub. Recipient: abuse@publicdomainregistry.com هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب