claimnotice[.]org
“ClaimNotify | Find & Reclaim Lost Money”
Kanıt özeti
The domain claimnotice.org was registered on September 08, 2025 through Spaceship, Inc. and is configured to use Cloudflare’s authoritative name servers lana.ns.cloudflare.com and sevki.ns.cloudflare.com. DNS resolution points to the IPv4 address 216.150.1.193, which belongs to Amazon.com, Inc. (AS16509) and is geolocated in the United States. No TLS certificate was observed, indicating that the site was served over plain HTTP at the time it was taken offline. The page title returned by the server reads “ClaimNotify | Find & Reclaim Lost Money,” which aligns with the listed scam type of a crypto drainer.
VirusTotal recorded a single positive detection out of ninety‑five scanners, and the domain appears on one public blocklist. PhishDestroy has also listed the host as blocked. The infrastructure evidence suggests a low‑profile hosting choice, leveraging Cloudflare DNS and Amazon EC2 resources while avoiding HTTPS to reduce operational overhead. Because the site is currently offline, active probing is limited to historical data.
Defenders should continue to monitor the IP address 216.150.1.193 for any re‑use, update IDS/IPS signatures with the observed page title and domain pattern, and ensure that outbound traffic to this host is denied. Additional analysis of HTTP response codes, content hashes, and any associated command‑and‑control patterns should be pursued if the domain resurfaces. Until further activity is observed, the threat remains classified as an elevated‑risk crypto drainer operating via claimnotice.org.
Data Coverage
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 11.08.2026
Tespit zaman çizelgesi
-
Cloudflare Radar
Cloudflare Radar taraması kaydedildi · Taramayı aç
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Adli İstihbarat
VirusTotal Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin