ecosystemrewards[.]live
“Nur einen Moment…”
ملاحظة محفوظة
تباين العناوين المرصود
ملخص الأدلة
Analysis of ecosystemrewards.live, observed on 25 July 2026, indicates that the domain is being used for a high‑risk fake‑airdrop phishing campaign. The site was registered on 21 February 2026 through NiceNIC International Group Co., Limited and is hosted behind Cloudflare’s network (ASN 13335). DNS resolution returns the address 104.21.14.48, which belongs to Cloudflare, Inc., and the nameservers listed are koa.ns.cloudflare.com and virginia.ns.cloudflare.com. The HTTPS service presents a certificate issued by Google Trust Services under the WE1 root, confirming that TLS termination is performed by Cloudflare. HTTP requests receive a 403 status code, suggesting that the server is intentionally restricting access, possibly to hide malicious content from casual browsers.
The page title returned by the server is “Nur einen Moment…”, a German phrase meaning “Just a moment…”, which is commonly used by malicious sites to delay analysis. No further content has been publicly disclosed, and the exact phishing landing page has not been captured. The domain is currently classified as a fake‑airdrop scam, targeting users with promises of cryptocurrency rewards. Detection platforms have flagged the domain: four of ninety‑five VirusTotal scanners reported malicious behavior, and it appears on one external blocklist. The site is also listed by PhishDestroy as blocked, and Gridinsoft assigns a trust score of 0 out of 100, indicating a high confidence of malicious intent.
Uncertainty remains regarding the specific payload or credential‑harvesting mechanisms employed, as the site’s internal structure has not been fully examined. Analysts should treat any traffic to ecosystemrewards.live as hostile. Recommended mitigation steps include adding the domain to network blocklists, enforcing DNS sink‑hole rules, and monitoring for outbound connections to the associated Cloudflare IP.
Data Coverage
مؤشرات الأمان
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
المخطط الزمني للاكتشاف
-
حالة النطاق
يمكن الوصول إليه ← يتعذر الوصول إليه
-
Cloudflare Radar
تم حفظ فحص Cloudflare Radar · فتح الفحص
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of ecosystemrewards.live · checked Apr 11, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب