bdagtokenclaim[.]live
“BlockDAG | Claim”
bdagtokenclaim.live — Masqué · accessible (HTTP 451). Type d'arnaque : Brand Impersonation. Résumé des preuves: VirusTotal 7/91 (alphaMountain.ai, BitDefender, Forcepoint ThreatSeeker, Fortinet, G-Data); cloaking observed; PhishDestroy score 71/100. Bureau d’enregistrement: NiceNIC.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain www.bdagtokenclaim.live is currently active and classified as a brand impersonation threat specifically targeting OKX, a well-known cryptocurrency exchange platform. This domain presents itself as a token claim portal under the name BlockDAG, a tactic commonly employed to deceive users into disclosing sensitive credentials or transferring digital assets under false pretenses. The page title, BlockDAG | Claim, further reinforces the appearance of legitimacy while masking its fraudulent intent. Infrastructure analysis reveals multiple concrete indicators of malicious activity. The domain is flagged by 5 of 95 security vendors on VirusTotal, including detection by PhishDestroy. It is registered through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar frequently associated with high-risk domains. The domain resolves to the IP address 64.29.17.65, which has been observed in prior fraudulent campaigns. Additionally, the domain appears on one security blocklist, and its SSL certificate is issued by Let’s Encrypt, a common choice among threat actors due to its low barrier to entry and lack of stringent validation. The combination of these factors—low vendor detection but specific blocklist inclusion—suggests targeted or emerging malicious activity rather than widespread recognition. As of this assessment, www.bdagtokenclaim.live remains active and poses an elevated risk to users, particularly those affiliated with OKX or cryptocurrency transactions. Organizations and individuals are strongly advised to block access to this domain at the network level and update endpoint protection rules to include its IP and associated indicators. Users should be educated to recognize brand impersonation tactics, especially those involving unsolicited token claims or airdrops. Verification of any cryptocurrency-related offers should be conducted exclusively through official channels, and suspicious domains should be reported to relevant threat intelligence platforms for broader mitigation.
Renseignements sur la sécurité réseau Registrar context
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-09-04 02:51:07 UTC
Technologies · 1 identified
Vercel is a cloud platform for static frontends and serverless functions.
vercel.com Confiance à 100 %Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of bdagtokenclaim.live · checked Jun 25, 2026
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif