claimclctsrewards[.]xyz
claimclctsrewards.xyz — Контент недоступен. Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 4/93 (alphaMountain.ai, CyRadar, Forcepoint ThreatSeeker, Fortinet); Spamhaus DBL_PHISH; PhishDestroy score 65/100.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain claimclctsrewards.xyz was created on February 21, 2026 and is currently listed as taken offline. It resolves to the IP address 104.21.64.1, which is hosted by Cloudflare, Inc. (AS13335) and geolocated to the United States. The SSL certificate presented for the site is identified as WE1, indicating a valid TLS handshake but offering no assurance of legitimacy. The page title returned by the web server is "Just a moment...", a generic placeholder that provides no indication of the site’s purpose.
The domain appears on a single security blocklist and is specifically blocked by the PhishDestroy service. VirusTotal analysis shows that four of ninety‑three security vendors have flagged the domain, suggesting a modest level of consensus among detection engines that the site is malicious. The listed scam type is "Crypto Scam," consistent with the elevated risk rating assigned to the domain. No additional intelligence such as registrar details, Safe Browsing verdicts, or OTX identifiers is available.
Analysis indicates that the infrastructure relies on Cloudflare’s CDN, which can obscure the true origin server and complicate takedown efforts. Defenders should immediately block the domain and its associated IP address at perimeter defenses, update intrusion detection signatures to include the observed page title and SSL fingerprint, and monitor for any resurgence of the domain or reuse of the IP range for similar crypto‑drainer campaigns. Continuous observation of threat‑intel feeds for new detections related to claimclctsrewards.xyz is recommended, as the current evidence suggests the domain was part of a short‑lived malicious operation that may reappear under a different label.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание