claim-re[.]xyz
“Re connects risk to capital | Re”
claim-re.xyz — Неперевірений. Уособлення бренду: Genericcrypto; Тип шахрайства: Crypto Drainer. Зведення доказів: VirusTotal 2/91 (Fortinet, Webroot); URLScan malicious verdict; Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 83/100. Реєстратор: NiceNIC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, claim-re.xyz, operates as a crypto drainer designed to deplete cryptocurrency wallets by tricking users into authorizing malicious transactions. The site impersonates Re, a platform associated with risk and capital management, leveraging its branding to gain trust. Victims are typically lured through fraudulent investment offers, fake airdrops, or deceptive wallet connection prompts, which execute unauthorized transfers once permissions are granted. Analysis indicates the domain was registered on June 20, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED. It resolves to IP address 104.21.71.75, hosted on Cloudflare infrastructure (AS13335). Security vendors detect limited but targeted coverage, with 2 out of 95 VirusTotal engines flagging the domain. The site is currently active and appears on three security blocklists, including high-confidence sources specializing in cryptocurrency threats. SSL certification is provided by Google Trust Services, lending a false sense of legitimacy. Users who visited claim-re.xyz or interacted with its content should immediately revoke any wallet permissions granted to the domain. Disconnect the site from all connected cryptocurrency wallets and transfer assets to a new, secure wallet if unauthorized transactions are suspected. Monitor account activity for irregularities and report the domain to relevant security platforms for further mitigation. Avoid re-engaging with the domain or any associated links, as the infrastructure remains operational and may deploy additional malicious payloads.
Розвіддані з мережевої безпеки Registrar context
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-18 02:55:52 UTC
Аналіз VirusTotal
Докази та зовнішні звіти
PD-20260623-0C11A1 Recipient: abuse@gen.xyz Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога