reclaimed-value[.]store
Kaydedilmiş tespit
Gizleme uyarısı
- Gizleme türü
status_split- Gizleme puanı
- 1/6
Kanıt özeti
This domain, reclaimed-value.store, is identified as an active crypto drainer designed to siphon cryptocurrency from compromised wallets. Analysis indicates the site employs malicious JavaScript to intercept and exfiltrate wallet credentials, a common tactic in crypto-draining campaigns. No specific brand impersonation is observed, but the infrastructure aligns with known drainer kits used in recent wallet-draining attacks targeting decentralized finance (DeFi) platforms. Infrastructure analysis reveals the domain was registered on June 17, 2026, through GoDaddy.com, LLC, and resolves to the IP address 15.197.148.33. The SSL certificate is issued by GoDaddy TLS Intermediate CA DV - R1v1, a common provider for both legitimate and malicious domains. VirusTotal detection shows 1 out of 95 security vendors flagging the domain, while it appears on 3 security blocklists. The domain is currently not listed in Google Safe Browsing (GSB) but is blocked by multiple wallet security providers and threat intelligence feeds. As of the latest assessment, reclaimed-value.store remains active, posing a high risk to users interacting with cryptocurrency wallets or DeFi platforms. Immediate response actions include blocking the domain at the network level, revoking SSL certificates associated with the IP, and alerting users to avoid interaction. Despite existing blocklist entries, the domain continues to operate, underscoring the need for continuous monitoring and proactive mitigation to prevent credential theft and financial loss. Users are advised to verify wallet addresses, employ hardware-based authentication, and avoid connecting wallets to unverified websites.
Data Coverage
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 11.08.2026
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknolojiler
2 yüksek güvenli teknoloji belirlendi
VirusTotal Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin