claim-uscrgov[.]com
“$USCR Airdrop - Welcome”
Kanıt özeti
The domain claim-uscrgov.com was created on 21 February 2026 and is currently offline. DNS resolution points to IP address 66.29.148.128, an address owned by Namecheap, Inc. (AS22612) and geolocated to the United States. The site presented a page titled "$USCR Airdrop - Welcome", a classic airdrop‑style lure that aligns with the documented Airdrop Scam phishing kit. The domain is listed on a single security blocklist and has been actively blocked by PhishDestroy, indicating that at least one external feed has categorized it as malicious.
An SSL certificate identified as R12 was observed during the brief capture window; the presence of a certificate does not imply trust, but it confirms that the site was serving HTTPS traffic. VirusTotal records show that the host was scanned by 93 independent engines without any detections at the time of analysis; however, the lack of detections does not constitute evidence of safety and should not be interpreted as such. No additional content, payload, or redirect behavior has been publicly disclosed, so the exact mechanism used to drain cryptocurrency wallets remains unverified.
Given the combination of a recent registration, use of a known airdrop phishing kit, presence on a blocklist, and association with a crypto‑drainer campaign, defenders should treat claim-uscrgov.com as a high‑confidence indicator of compromise. Recommended mitigations include adding the domain and its resolved IP to outbound filtering rules, monitoring DNS queries for the domain or its IP, and ensuring that endpoint protection solutions are updated to flag any related URLs or executable payloads. Continued observation of threat‑intel feeds for re‑appearance or new artifacts is advised.
Data Coverage
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 12.08.2026
VirusTotal Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin