claimcryptorewards-bonus[.]us
“Suspected phishing site | Cloudflare”
claimcryptorewards-bonus.us — Непроверенный. Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 6/93 (alphaMountain.ai, CyRadar, Fortinet, Seclookup, SOCRadar); 3 external blocklist matches (Polkadot, Enkrypt, Codeesura); PhishDestroy score 74/100. Регистратор: Web Commerce Communica….
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain claimcryptorewards-bonus.us was registered on February 21, 2026 through Web Commerce Communications Limited dba WebNic.cc and is currently taken offline. Infrastructure analysis shows the domain resolves to IP 172.67.179.119, which belongs to AS13335 Cloudflare, Inc. and is located in the United States. The authoritative nameservers are rayden.ns.cloudflare.com and irena.ns.cloudflare.com, confirming Cloudflare as the DNS provider. The site presented the page title "Suspected phishing site | Cloudflare" and employed Cloudflare services with HTTP/3 enabled.
The SSL certificate is issued by Google Trust Services under the WE1 identifier, indicating a valid TLS chain but offering no guarantee of legitimacy. Reputation scoring from Gridinsoft assigned a trust score of 0 out of 100, and the domain appears on four security blocklists, including PhishDestroy, Polkadot, Enkrypt, and Codeesura. VirusTotal scans reported six detections out of ninety‑three security vendors, reinforcing the malicious classification. AlienVault OTX referenced the domain in a single threat‑intel pulse, further confirming its association with crypto‑draining activity.
While the exact phishing lure or target brand is not disclosed in the available data, the combination of low trust score, blocklist presence, and vendor detections suggests a high likelihood of a crypto‑drainer operation. Defenders should continue to block the domain at network perimeter, monitor for any residual traffic to the associated IP, and update endpoint detection rules to flag the observed SSL certificate and HTTP/3 fingerprint. Ongoing reconnaissance should verify whether the domain reappears under a different subdomain or IP, and threat‑intel feeds should be consulted for any emerging indicators related to this infrastructure.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of claimcryptorewards-bonus.us · checked Mar 2, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание