airdrop-c5d[.]pages[.]dev
فحص التصيد والأمان للنطاق airdrop-c5d.pages.dev
“Airdrop 2 Artists | Audius”
airdrop-c5d.pages.dev — آخر نشاط معروف (HTTP 200). نوع الاحتيال: Crypto Scam. ملخص الأدلة: VirusTotal 8/91 (alphaMountain.ai, BitDefender, CyRadar, Forcepoint ThreatSeeker, Fortinet); Google Safe Browsing flagged; PhishDestroy score 95/100. مسجّل النطاق: Cloudflare.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
This domain is flagged as a high-risk brand impersonation threat specifically designed to execute airdrop scams. Analysis indicates the site mimics legitimate cryptocurrency airdrop promotions, likely targeting users of the Audius platform based on the page title 'Airdrop 2 Artists | Audius.' The fraudulent scheme aims to deceive victims into connecting wallets or divulging private keys, enabling unauthorized asset transfers. Infrastructure analysis reveals the domain was registered on February 05, 2025, through Cloudflare, Inc., a registrar frequently exploited for malicious campaigns due to its anonymity features. The domain resolves to IP address 172.66.46.223, hosted on AS13335 (Cloudflare, Inc.) in the United States. Detection metrics show minimal coverage, with only 1 of 95 security vendors flagging the domain on VirusTotal. The site appears on a single security blocklist and is actively blocked by at least one threat intelligence feed. Google Safe Browsing has classified the domain as phishing, and the SSL certificate is issued by Google Trust Services (WE1), a common characteristic of both legitimate and malicious Cloudflare-hosted sites. Mitigation requires immediate action from security teams and end users. Network administrators should block the domain and its resolving IP (172.66.46.223) at the perimeter to prevent access. Cryptocurrency users should be educated to verify airdrop legitimacy through official project channels and avoid connecting wallets to unverified platforms. Wallet providers are advised to monitor for connections originating from this domain and implement transaction warnings for interactions linked to known scam infrastructure. Given the domain's recent registration and active status, continuous monitoring is recommended to track potential shifts in hosting or additional impersonation targets.
نطاق تغطية البيانات13 recorded checks
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
الاستخبارات الجنائية الرقمية
التقنيات · 4 identified
Free public CDN for open-source projects, serving files from npm and GitHub.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
تحليل VirusTotal
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.