claim-netx[.]world
“Nur einen Moment…”
claim-netx.world — Conteúdo indisponível. Tipo de golpe: Crypto Scam. Resumo das evidências: VirusTotal 1/95 (SOCRadar); PhishDestroy score 55/100. Registrador: Cloudflare.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Analysis of the domain claim-netx.world indicates it was a confirmed crypto drainer phishing site, operational until recently taken offline. The domain resolved to IP address 172.67.223.78, hosted on Cloudflare's infrastructure (AS13335) in the United States. Infrastructure analysis reveals the domain was registered through Cloudflare, Inc., with nameservers mario.ns.cloudflare.com and piper.ns.cloudflare.com, consistent with common phishing hosting patterns leveraging Cloudflare's services to obscure origin and evade detection. The domain was flagged by one security vendor on VirusTotal, though the specific detection context remains limited.
It appeared on a single security blocklist, classified explicitly as a crypto scam. The page title 'Nur einen Moment…' suggests a transient or redirecting page, potentially part of an evasion tactic to delay or mislead automated analysis tools. No SSL certificate was present, which is atypical for legitimate financial or crypto-related sites but not uncommon in phishing infrastructure prioritizing rapid deployment over security. Defenders should note that while the domain is currently offline, the underlying infrastructure (Cloudflare IP and nameservers) may be reused for future phishing campaigns.
The absence of SSL and the use of Cloudflare hosting are not definitive indicators of malicious activity on their own but, combined with the blocklist classification and detection by PhishDestroy, provide sufficient evidence to treat this domain as confirmed malicious. Organizations are advised to block the domain at the DNS level and monitor associated IP ranges for similar activity. The exact target or methodology of the crypto drainer remains unconfirmed due to the lack of detailed page analysis, but the classification as a crypto scam aligns with known patterns of wallet-draining attacks.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Inteligência forense
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo