claim[.]succisinct[.]foundation
“Claim Your Rewards | Succinct Foundation”
claim.succisinct.foundation — Contenido no disponible. Tipo de estafa: Crypto Scam. Resumen de las pruebas: VirusTotal 2/95 (G-Data, Gridinsoft); 1 external blocklist match (ScamSniffer); PhishDestroy score 58/100. Registrador: Web Commerce Communica….
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
This investigation documents the infrastructure associated with claim.succisinct.foundation, observed as a crypto drainer campaign. The site presented the page title “Claim Your Rewards | Succinct Foundation,” indicating an attempt to lure victims with a reward claim narrative. The domain was registered on August 20, 2025 through Web Commerce Communications Limited and currently shows no SSL certificate, suggesting the site was served over HTTP when active. DNS resolution points to the Cloudflare edge address 172.67.158.31, belonging to AS13335 Cloudflare, Inc., located in the United States. The domain is hosted on Cloudflare’s network, which provides anonymity for the underlying origin server and complicates direct takedown efforts.
Security telemetry marks the domain as offline at the time of analysis, and it appears on two independent blocklists, PhishDestroy and ScamSniffer. The Gridinsoft trust score is 0 out of 100, reinforcing its malicious classification. VirusTotal scans recorded detections by 2 of 95 antivirus engines, confirming that at least a subset of security products recognize the domain as malicious. The nameservers nora.ns.cloudflare.com and yew.ns.cloudflare.com are standard Cloudflare delegations, offering no additional attribution.
Evidence does not disclose the specific payload or wallet addresses used in the drainer operation, and the page content beyond the title has not been captured. Consequently, the full scope of the campaign, including victim targeting and financial loss, remains uncertain. Defenders should block the domain and its associated IP address at perimeter and endpoint layers, monitor for new subdomains under the same registrar, and consider the Cloudflare IP range as a potential vector for related activity. Continuous re‑scanning of the domain on VirusTotal and inclusion in internal threat‑intel feeds are recommended to capture any future re‑activation.
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
ICANN OVERSIGHT
Registration: succisinct.foundation
Acreditación y contexto RAA
Acreditación y contexto RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain succisinct.foundation behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análisis de VirusTotal
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.