claim-mantle[.]xyz
claim-mantle.xyz — Контент недоступен. Олицетворение бренда: Mantle; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 11/93 (ADMINUSLabs, ChainPatrol, Criminal IP, alphaMountain.ai, CRDF); 4 external blocklist matches; PhishDestroy score 83/100.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain claim-mantle.xyz was registered on February 21, 2026 and is currently taken offline. Intelligence indicates that the site was used to impersonate the Mantle brand in a crypto‑focused scam. The domain appears on five independent security blocklists, including PhishDestroy, ScamSniffer, Polkadot, Enkrypt, and Codeesura, confirming that multiple community‑driven feeds have flagged it as malicious. A Gridinsoft trust assessment assigns a score of 0 out of 100, reflecting a complete lack of trustworthiness.
VirusTotal analysis shows that 11 of 93 scanned security vendors flagged the domain, providing independent confirmation of its malicious nature. The specific scam type is identified as a crypto scam, suggesting attempts to lure victims into fraudulent cryptocurrency transactions or credential harvesting. No public page title or content snapshot is available, and the site’s SSL certificate status, hosting IP, registrar details, and Safe Browsing or OTX entries have not been disclosed in the supplied intelligence. Because the domain is offline, active probing is not possible at this time, but the historical presence on multiple blocklists and the low trust score indicate that it should be treated as high‑risk.
Defenders should ensure that claim-mantle.xyz is added to local deny lists, DNS filtering rules, and proxy blocklists. Threat hunting teams should search for any recent outbound connections or DNS queries to this domain across their environment, especially in contexts involving cryptocurrency services or Mantle‑related assets. Incident response procedures should include verification of any credential or wallet address disclosures that match the timeframe of the domain’s activity. Continuous monitoring of the listed blocklists for re‑appearance or related domains is recommended, as actors often rotate infrastructure after takedown.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
Криминалистическая аналитика
Анализ VirusTotal
Доказательства и внешние отчеты
“@triggerpulled”
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание