claimsfreebox[.]lat
claimsfreebox.lat — Konten tidak tersedia. Jenis penipuan: Crypto Scam. Ringkasan bukti: VirusTotal 0 detections (engine total unavailable); PhishDestroy score 25/100. Registrar: NameSilo.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
On July 24, 2026 analysts observed the domain claimsfreebox.lat being used in a cryptocurrency‑draining campaign. The domain was registered through NameSilo, LLC on August 01, 2025 and presently resolves to the Cloudflare‑provided address 104.21.47.183, which is announced by AS13335 in the United States. Both authoritative name servers, ezra.ns.cloudflare.com and keyla.ns.cloudflare.com, are Cloudflare‑managed, indicating the attacker is leveraging a reputable CDN to hide the true origin of the malicious host. No SSL certificate was presented when the site was queried, and the HTTP response returned the generic page title “Just a moment…”, suggesting a Cloudflare challenge page rather than a legitimate landing page.
The domain appears on a single security blocklist and has been specifically flagged by PhishDestroy, reinforcing its classification as a crypto‑scam infrastructure. A Gridinsoft trust score of 0 / 100 further reflects the high risk associated with the host. VirusTotal analysis shows the URL was scanned by 95 anti‑malware engines without any detections; however, the absence of detections does not constitute evidence of benign behavior and should not be interpreted as a clearance.
The site’s current status is offline, and no further content has been captured. Given the observable indicators—recent registration, Cloudflare hosting, lack of TLS, low trust score, blocklist presence, and malicious classification—defenders should proactively block DNS resolution for claimsfreebox.lat and any subdomains, inspect outbound traffic for connections to the associated IP address, and monitor for similar Cloudflare‑fronted domains created after mid‑2025 that exhibit comparable characteristics. Continuous re‑evaluation is advised, as the offline status may change and additional payloads could be deployed behind the same infrastructure.
Intelijen Keamanan Jaringan Registrar context
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Intelijen Forensik
Analisis VirusTotal
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive