claimwallitiq[.]online
“רק רגע...”
claimwallitiq.online — Контент недоступен. Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 3/95 (alphaMountain.ai, Bfore.Ai PreCrime, Gridinsoft); PhishDestroy score 65/100. Регистратор: OwnRegistrar.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, claimwallitiq.online, has been confirmed as a crypto drainer phishing site targeting cryptocurrency wallet credentials. Analysis of the page title, "רק רגע...", suggests a localized attack vector, likely designed to mimic legitimate wallet connection prompts or transaction verification pages. No direct brand impersonation is evident, but the infrastructure aligns with known drainer kits used to siphon digital assets upon user interaction. The domain exhibits characteristics consistent with automated phishing frameworks, including rapid deployment and minimal content complexity. Infrastructure analysis reveals the following technical indicators: the domain resolves to IP address 172.67.134.88, a shared hosting node frequently associated with malicious activity. It was registered on September 01, 2025, through OwnRegistrar, Inc., a registrar with a history of hosting high-risk domains. Detection metrics indicate elevated threat levels, with 3 out of 95 security vendors flagging the domain on VirusTotal. The domain appears on a single security blocklist, and both Gridinsoft and Scamadviser trust scores are 0/100 and 3/100, respectively. No entries were found in Google Safe Browsing at the time of analysis, though this may reflect detection latency rather than benign status. As of the latest assessment, claimwallitiq.online has been taken offline, likely in response to security alerts or automated takedown mechanisms. Despite its current inactive status, residual risk persists due to the potential for rapid redeployment under a new domain or IP. Network defenders are advised to implement DNS-based blocking for the domain and associated IP, while end users should verify wallet connection prompts through official channels only. Continuous monitoring of registrar activity for newly registered domains with similar naming patterns is recommended to preempt further campaigns.
Сигналы безопасности
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Криминалистическая аналитика
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание