MALICIOUS — CRITICAL
claim-blod.pages.dev Phishing Intelligence Report - PhishDestroy
claim-blod[.]
The domain claim-blod.pages.dev is a cryptocurrency phishing site designed to function as a crypto drainer, a type of scam that siphons digital assets from victims' wallets.
- VirusTotal
- 1/93
- Blocklists
- 3 · MetaMask, ScamSniffer
- Доступність
- Контент недоступний · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
claim-blod.pages.dev — Контент недоступний (HTTP 502). Уособлення бренду: ["twitter"]; Тип шахрайства: Airdrop Scam. Зведення доказів: VirusTotal 1/93 (Phishing Database); 3 external blocklist matches (MetaMask, ScamSniffer, SEAL); PhishDestroy score 74/100. Реєстратор: Cloudflare.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
The domain claim-blod.pages.dev is a cryptocurrency phishing site designed to function as a crypto drainer, a type of scam that siphons digital assets from victims' wallets. It does not impersonate a specific brand and no drainer kit has been identified. As of the latest verification, claim-blod.pages.dev has been taken offline, though it previously posed an elevated risk to users who interacted with it.
Technical indicators confirm the malicious nature of claim-blod.pages.dev. The domain was flagged by 1 of 95 VirusTotal security vendors and appears on 4 security blocklists, including PhishDestroy, MetaMask, ScamSniffer, and SEAL. It was registered through Cloudflare, Inc. on February 26, 2026, and resolved to the IP address 188.114.97.3, hosted by Cloudflare, Inc. in the US. The domain lacked an SSL certificate, and its nameservers included adi.ns.cloudflare.com, faye.ns.cloudflare.com, karl.ns.cloudflare.com, and stan.ns.cloudflare.com. The observed page title was 'BLOD | Airdrop', aligning with its cryptocurrency scam theme.
Users who interacted with claim-blod.pages.dev should immediately revoke any token approvals granted to the site and transfer remaining funds to a new, secure wallet. To prevent further exposure, enable transaction simulation tools to review wallet activity and report the domain to platforms like ScamSniffer, MetaMask’s threat intelligence, or PhishDestroy. Additionally, victims may file complaints with local cybercrime units or organizations such as the Internet Crime Complaint Center (IC3) to aid in tracking and mitigating such threats.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Обсяг даних12 recorded checks
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Архівні докази
Докази та зовнішні звітиIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.