MALICIOUS — HIGH
mega-claims[.]link
This report details a cryptocurrency scam associated with the domain mega-claims.link.
- VirusTotal
- 5/93
- Blocklists
- 2 · MetaMask, SEAL
- Доступність
- Контент недоступний · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
mega-claims.link — Контент недоступний (HTTP 502). Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 5/93 (alphaMountain.ai, CyRadar, Fortinet, Gridinsoft, SOCRadar); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Реєстратор: Web Commerce Communica….
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
This report details a cryptocurrency scam associated with the domain mega-claims.link. The site's page title, "MegaETH | Public Sale," indicates it impersonated the MegaETH project to deceive users into participating in a fraudulent token sale. The threat posed is financial theft, as victims would likely send cryptocurrency to the attackers with no expectation of return, and the site may have collected other sensitive information.
Technical analysis reveals the site was flagged by 5 out of 95 VirusTotal vendors, including alphaMountain.ai, CyRadar, Fortinet, Gridinsoft, and SOCRadar, and appears on 3 blocklists. The domain was created on 2026-02-21 with registrar Web Commerce Communications Limited. It resolves to IP address 172.67.180.61 (United States), hosted by AS13335 Cloudflare, Inc., and uses nameservers imani.ns.cloudflare.com and vicente.ns.cloudflare.com. The site has no SSL certificate.
The domain is currently offline. Based on the provided data, the risk level for users who may have visited the site while active is high, given the verified cryptocurrency scam classification and multiple security vendor detections.
Обсяг даних12 recorded checks
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Архівні докази
Докази та зовнішні звітиIndependent lookups and source reports
PD-20260217-FDC43C Recipient: compliance_abuse@webnic.cc Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.