claim-sosovalue[.]com
“AI-era growth network of verified humans | SoSoValue EXP Ads”
Kanıt özeti
PhishDestroy has identified the domain claim-sosovalue.com as an active crypto drainer, a specialized form of malware designed to siphon cryptocurrency from victims' wallets. This threat remains operational, posing significant risks to users who interact with it, particularly those engaging in decentralized finance (DeFi) or crypto trading activities. Unlike generic phishing schemes, crypto drainers execute unauthorized transactions by exploiting wallet permissions, often leading to irreversible financial losses. Technical analysis reveals that claim-sosovalue.com is flagged by 4 of 95 security vendors on VirusTotal, indicating early but growing detection. The domain resolves to the IP address 104.21.43.245, a Cloudflare-associated endpoint that may obscure its true origin. It was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar frequently linked to malicious domains. The SSL certificate, issued by Google Trust Services (WE1), provides a false sense of legitimacy, as threat actors commonly abuse trusted certificate authorities to evade suspicion. No creation date or additional blocklist data is currently available, but the domain's active status and low detection rate suggest it may still be in the early stages of deployment. At present, claim-sosovalue.com remains a live threat, with no indications of takedown or mitigation. Users are strongly advised to block the domain at the network level and avoid interacting with any links or pop-ups associated with it. Organizations should update their web filtering solutions to include this domain and monitor for connections to 104.21.43.245. Individuals who may have engaged with the site should immediately revoke wallet permissions, transfer remaining assets to a secure wallet, and scan their devices for malware. Given the irreversible nature of crypto transactions, proactive prevention is critical—educate users about the risks of signing unverified smart contracts or connecting wallets to unfamiliar platforms.
Data Coverage
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 13.08.2026
7 izlenen harici kaynak Eşleşme yok
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknolojiler
3 yüksek güvenli teknoloji belirlendi
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of claim-sosovalue.com · checked Jun 13, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin