abiinic[.]com
“Make Your Claim!”
Analysis conducted on 24 July 2026 indicates that the domain abiinic.com was created on 5 November 2024 and is presently offline. The registration is listed under NameCheap, Inc. with authoritative nameservers dns1.registrar-servers.com and dns2.registrar-servers.com. Network resolution points to IP address 213.111.156.41, which belongs to ASN 43641 (SOLLUTIUM EU Sp z.o.o.) hosted in the Netherlands. No TLS certificate is observed for the host, implying that HTTPS connections are unavailable. The site’s only visible attribute is the page title “Make Your Claim!”, which does not provide further functional context.
The domain is classified as a wallet/seed phishing campaign targeting the cryptocurrency aggregator 1inch, as indicated by the brand‑impersonation label and the “Make Your Claim!” title. Google Safe Browsing records classify the URL as a social‑engineering threat. Independent blocklist monitoring shows inclusion on four distinct blocklists, specifically PhishDestroy, Polkadot, Enkrypt, and Codeesura, confirming that multiple mitigation platforms have taken the domain down. VirusTotal analysis reports that nine of ninety‑five scanned scanners flagged the domain, reinforcing the malicious assessment despite the limited sample size.
Defenders should continue to block traffic to 213.111.156.41 and add abiinic.com to local deny lists. Because the domain lacks an SSL certificate and is currently offline, automated content inspection is not possible; however, the presence on multiple blocklists and the Google Safe Browsing designation provide sufficient confidence to treat any future resurrection of the host as high‑risk. Monitoring of the NameCheap registrar for new registrations that reuse the same nameservers or similar sub‑domains is recommended, as is periodic re‑query of VirusTotal and blocklist services to capture any re‑activation attempts.
Процесс реагирования на угрозы
Проверка по блок-листам
Источников: 10 · синхронизировано 09.08.2026
Хронология обнаружения
Сохранённые наблюдения в хронологическом порядке.
-
Cloudflare Radar
Cloudflare Radar: впервые отмечено как https://radar.cloudflare.com/scan/a3f07761-45ec-466b-8d21-d9c820021589
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание