web3[.]claim-enso[.]shop
“Web3 Dapp Resolver”
web3.claim-enso.shop — Контент недоступен (HTTP 502). Олицетворение бренда: Genericcrypto; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 2/93 (SOCRadar, Trustwave); URLScan malicious verdict; PhishDestroy score 71/100.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain www.web3.claim-enso.shop was registered on February 21, 2026 and is presently listed as offline after being taken down. Host analysis shows it resolves to the IPv4 address 102.218.215.37, which is allocated to AS329184 Host Africa (Pty) Ltd in South Africa (ZA). The site presented the page title "Web3 Dapp Resolver," consistent with a crypto‑related service, and is classified as a crypto scam, specifically a crypto drainer, in the supplied intelligence.
The SSL certificate is identified as type R12, indicating a low‑trust certificate, and the Gridinsoft trust score is recorded as 0 out of 100, reflecting a complete lack of confidence in the host. The domain appears on a single security blocklist and has been flagged by two of ninety‑three VirusTotal security vendors, providing additional confirmation of malicious intent. PhishDestroy has also blocked the domain, reinforcing its reputation as a threat vector.
While the exact phishing or draining mechanisms have not been captured in the available data, the combination of a newly created domain, low‑trust SSL, zero trust score, and multiple independent detections strongly suggests an active crypto‑draining operation. Defensive teams should continue to block the domain at perimeter defenses, monitor DNS queries for the 102.218.215.37 address, and add the domain to internal threat‑intel feeds. Given the elevated risk rating, organizations handling cryptocurrency transactions should treat any communications referencing this domain as malicious and enforce strict verification controls for any web‑based crypto interactions.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание