verticalstudio-claims[.]xyz
“Un momento…”
verticalstudio-claims.xyz — Непроверенный. Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 5/91 (alphaMountain.ai, Chong Lua Dao, CRDF, Forcepoint ThreatSeeker, Gridinsoft); PhishDestroy score 65/100. Регистратор: NameSilo.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
verticalstudio-claims.xyz was first observed on July 12, 2026 and is classified as a high‑risk cryptocurrency drainer. The domain is actively serving content and has been flagged by multiple security feeds. Its risk rating is high and it remains on the active watchlist. The domain was registered on November 03, 2025 through NameSilo, LLC and uses the Cloudflare nameservers ines.ns.cloudflare.com and sam.ns.cloudflare.com. DNS resolution points to IP address 172.67.154.37, which belongs to AS13335 Cloudflare, Inc., located in the United States. The TLS certificate is issued by Google Trust Services under the WE1 intermediate, indicating a valid HTTPS endpoint. HTTP requests return a 403 status code, and the only observed page title is “Un momento…”. VirusTotal analysis shows that 3 of 95 scanned security vendors have flagged the domain, and the site appears on one external blocklist. Gridinsoft assigns a trust score of 0 out of 100, and PhishDestroy has already blocked the domain. Detected technologies include Cloudflare Browser Insights, Cloudflare services, and HTTP/3 support. Publicly available information does not reveal the exact landing page content beyond the title, nor the specific payload used to drain cryptocurrency wallets. The limited detection by VirusTotal suggests that many scanners have not yet identified malicious behavior, which may indicate a low‑profile or evolving campaign. Defenders should add verticalstudio-claims.xyz to network and endpoint blocklists, monitor DNS queries for the domain, and enforce TLS inspection to capture any hidden payloads. Continuous re‑scanning with updated vendor engines is advised, as additional indicators may emerge. Organizations handling cryptocurrency transactions should treat any interaction with this domain as a breach attempt and isolate compromised assets immediately.
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 3 identified
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание