eigencloud.claims
“EigenLayer”
eigencloud.claims — Contenido no disponible. Suplantación de marca: Eigenlayer; Tipo de estafa: Fake Airdrop; Drainer: Angel Drainer. Resumen de las pruebas: VirusTotal 16/95 (alphaMountain.ai, BitDefender, CRDF, CyRadar, ESET); URLQuery 100 det.; URLScan malicious verdict; Spamhaus DBL_PHISH; 1 external blocklist match (ScamSniffer); PhishDestroy score 100/100. Registrador: NET-USA (ASN: 400992).
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
Resumen de las pruebas
The domain eigencloud.claims is a high-risk crypto drainer phishing site that impersonates the EigenLayer protocol. It deploys the Angel Drainer kit to automatically siphon cryptocurrency from victims' wallets under the guise of a fake airdrop. As of the latest verification, eigencloud.claims has been taken offline, but it remains a documented threat for users who may have interacted with it prior to its removal.
Technical indicators confirm the malicious nature of eigencloud.claims. The domain is flagged by 16 of 95 security vendors on VirusTotal, including alphaMountain.ai, BitDefender, and CRDF. It appears on 2 security blocklists, specifically PhishDestroy and ScamSniffer, and is linked to a single threat intelligence pulse on AlienVault OTX. The domain was registered through NET-USA (ASN: 400992) and resolves to the IP address 185.245.34.139, hosted by ZhouyiSat Communications in the US. No SSL certificate is present, and the observed page title is 'EigenLayer'. Nameservers for the domain are a.dnspod.com, b.dnspod.com, and c.dnspod.com. Google Safe Browsing has not flagged the domain, and the creation date is not available.
Users who visited eigencloud.claims or connected their wallet to the site should immediately revoke all token approvals using a tool like Revoke.cash or Etherscan's token approval checker. Transfer remaining funds to a new, secure wallet to prevent further unauthorized access. Report the domain to platforms such as ScamAdviser, PhishTank, or the EigenLayer official security team to aid in broader threat mitigation. Enable two-factor authentication on all accounts and monitor for unusual transactions or login attempts.
Inteligencia forense
Forensic History & Detection Timeline
-
Cloudflare Radar Scan Mar 7, 2026 · 14:04 UTCCloudflare Radar scan registered: View Radar report.
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Análisis de detección y evasión
Comprobación del enmascaramiento y la distribución del tráfico
No se ha observado
No se ha observado ningún enmascaramiento en la exploración almacenada.
Observaciones almacenadas de rastreadores frente a navegadores para este servidor, además de una comprobación en tiempo real de la huella digital para sistemas de distribución de tráfico al estilo Keitaro.
- Indicador de camuflaje almacenado
- No se ha observado
- Puntuación de encubrimiento
- 0/6
- Último escaneo de camuflaje
Nota del escáner: dns_error: raw=dns_error; via=local_dns_prefilter
Captura guardada · 2 sources
Inteligencia de dominios
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
ICANN OVERSIGHT
Acreditación y contexto RAA
Acreditación y contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análisis de VirusTotal
Dominios similares
51 dominios similares almacenados
Mostrar todo (39)
Inteligencia comunitaria
1 reporte de la comunidad
CategoríaPHISHING
The PhishFort Detection System has flagged this as a domain threat, classified as phishing. Threat detected at 2025-11-18T09:04:07.675Z.
Reportes de la comunidad
Reportado por 1 miembro de la comunidad; visto por primera vez el 17/11/2025
- Reportes almacenados
- 1
- URL únicas reportadas
- 1
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.