claimshopeemy[.]com
“-”
claimshopeemy.com was registered on July 18, 2026 through PDR Ltd. d/b/a PublicDomainRegistry.com. The domain resolves to the single IPv4 address 45.133.200.14 and is served by the authoritative name servers ns1.prohoster.name, ns2.prohoster.cc, and ns3.prohoster.xyz. Intelligence classifies the site as a crypto‑drainer, and it currently appears on one public security blocklist. The domain is actively flagged by the PhishDestroy blocklist, indicating that at least one external sink has identified malicious activity. No page title has been captured, and no additional content analysis is available, so the exact payload or lure employed by the site remains unknown. The short age of the domain—created only one day before this report—combined with its immediate appearance on a blocklist suggests a rapid deployment typical of automated crypto‑draining campaigns. Defenders should consider adding 45.133.200.14 to network‑level deny lists, enforce DNS filtering for claimshopeemy.com, and monitor for related C2 traffic. Ongoing telemetry should be collected to determine whether the domain is being used to host malicious scripts, redirect victims to cryptocurrency mining services, or exfiltrate credentials. Until further investigation clarifies the operational details, the domain should be treated as high‑risk and blocked wherever possible.
Network Security Intelligence
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | claimshopeemy.com |
phishing | Phishing Block |
Threat Response Pipeline
Public Blocklist Status
Stored Capture
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Threat Intel Cross-Reference · source references
Technologies · 8 identified
WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. Features include a plugin architecture and a template system.
wordpress.org 100% confidenceBootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com 100% confidenceYoast SEO is a search engine optimisation plugin for WordPress and other platforms.
yoast.com 100% confidenceNginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% confidenceQuery Migrate is a javascript library that allows you to preserve the compatibility of your jQuery code developed for versions of jQuery older than 1.9.
github.com 100% confidencejQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% confidenceVirusTotal Analysis
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of claimshopeemy.com · checked Jul 19, 2026
Evidence & External Reports
PD-20260719-C4DF48 Recipient: admhakimi04@gmail.com Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive