trust[.]claim-events[.]xyz
“TrustWallet Token Airdrop | Claim Your Rewards”
trust.claim-events.xyz — Прикритий · доступний (HTTP 502). Уособлення бренду: Trust Wallet; Тип шахрайства: Fake Airdrop. Зведення доказів: VirusTotal 4 detections (engine total unavailable) (ChainPatrol, alphaMountain.ai); URLQuery 8 alerts; 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 78/100. Реєстратор: NameSilo.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy identifies trust.claim-events.xyz as an active crypto drainer domain designed to steal cryptocurrency assets from unsuspecting users. This domain is engineered to mimic legitimate claim event portals, tricking visitors into connecting their wallets or entering sensitive credentials. Once compromised, the site initiates unauthorized blockchain transactions, draining funds without user consent. The domain operates under a facade of legitimacy, but its infrastructure and behavior align with known cryptocurrency theft campaigns targeting uninformed or distracted users. Security researchers have documented similar domains using similar naming conventions to exploit trending events or services, often leveraging urgency or time-sensitive offers to pressure victims into acting hastily. PhishDestroy’s analysis reveals that trust.claim-events.xyz was registered through NameSilo, LLC on April 19, 2026, a notably recent creation that raises immediate suspicion given its short operational lifespan. The domain resolves to IP address 104.21.71.46 and holds an SSL certificate issued by Let’s Encrypt, which may falsely enhance its perceived legitimacy. Security intelligence sources, including VirusTotal, flag this domain with only 2 out of 95 security vendors detecting it as malicious, illustrating how new or subtle threats often evade early detection. Additionally, the domain has been blocked by MetaMask and SEAL, two widely used security tools in the cryptocurrency ecosystem, further corroborating its malicious intent. These indicators collectively suggest a coordinated effort to deploy this domain quickly and widely before it can be widely recognized and blacklisted. If you have visited trust.claim-events.xyz, PhishDestroy strongly advises taking immediate action to secure your assets and identity. Disconnect any connected wallets or applications from this domain and revoke any permissions granted to it. Transfer any remaining funds to a newly generated wallet address with a clean transaction history. Monitor your transaction activity closely and consider reporting unauthorized transactions to your wallet provider or relevant blockchain explorers. Update your antivirus and browser security settings, and avoid interacting with similar domains or communications claiming to offer unsolicited claim events or rewards. For a comprehensive threat assessment and further guidance, visit PhishDestroy and search for this domain using its unique seed identifier f1600d.
Розвіддані з мережевої безпеки Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| YARAhub by abuse.ch | trust.claim-events.xyz/wallet-modal.js |
malware | Detects file containing Telegram Bot API |
| YARAhub by abuse.ch | trust.claim-events.xyz/ |
malware | Detects file containing Telegram Bot API |
| YARAhub by abuse.ch | trust.claim-events.xyz/images/crypto_com.png |
malware | Detects file containing Telegram Bot API |
| YARAhub by abuse.ch | trust.claim-events.xyz/images/1inch.png |
malware | Detects file containing Telegram Bot API |
| YARAhub by abuse.ch | trust.claim-events.xyz/images/blockchain_com.png |
malware | Detects file containing Telegram Bot API |
| YARAhub by abuse.ch | trust.claim-events.xyz/favicon.ico |
malware | Detects file containing Telegram Bot API |
| DNS4EU | trust.claim-events.xyz |
malicious | Sinkholed |
| Quad9 DNS | trust.claim-events.xyz |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Registration: claim-events.xyz
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain claim-events.xyz behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of trust.claim-events.xyz · checked May 12, 2026
Докази та зовнішні звіти
PD-20260512-925ADA Recipient: abuse@gen.xyz Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога