claim[.]backpackfinance[.]xyz
claim.backpackfinance.xyz — Непроверенный. Олицетворение бренда: MetaMask; Тип мошенничества: Crypto Drainer. Сводка доказательств: VirusTotal 16/91 (ADMINUSLabs, ChainPatrol, BitDefender, Chong Lua Dao, CRDF); 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; PhishDestroy score 95/100. Регистратор: NameSilo.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain claim.backpackfinance.xyz is currently flagged as a high‑risk crypto‑drainer infrastructure. VirusTotal analysis shows that 16 of 91 scanned security vendors have identified the domain as malicious, indicating a non‑trivial detection consensus across multiple AV engines. Independent blocklist services have also marked the domain, with PhishDestroy, MetaMask, and SEAL explicitly listing it as blocked. In addition, the domain appears on three external security blocklists, reinforcing its classification as an active threat vector.
The combined evidence suggests that the site is being used to lure cryptocurrency users into transferring assets to attacker‑controlled wallets, a pattern consistent with known crypto‑drainer campaigns. While the exact phishing page content, hosting IP, SSL certificate details, and registrar information have not been disclosed, the presence on multiple reputable blocklists and the multi‑vendor detection count provide sufficient confidence for defensive action. Defenders should immediately add claim.backpackfinance.xyz to local deny‑list rules, enforce network‑level DNS filtering, and block any outbound connections to the domain at perimeter firewalls.
Endpoint protection policies should be updated to treat the domain as malicious, and any observed attempts to resolve or contact the domain should be logged and investigated. Users of cryptocurrency wallets, especially those employing MetaMask, should be warned that interactions with this domain may result in unauthorized fund transfers. Continuous monitoring for new indicators, such as IP address changes or associated subdomains, is recommended to maintain situational awareness as the threat actor may evolve its infrastructure.
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Registration: backpackfinance.xyz
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain backpackfinance.xyz behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of claim.backpackfinance.xyz · checked Jul 29, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание