الانتقال إلى تقرير الأمان
أمن المجال وذكاء التهديدات
pendle-airdrop.finance favicon

pendle-airdrop.finance

“Airdrop | Pendle”

حكم التهديد حرجة 100/100 درجة الأدلة
التوفر المحتوى غير متوفر لم يكن المحتوى متاحًا في الملاحظة الأخيرة
اكتشافات VirusTotal: 17/95 تطابقات القائمة السوداء المخزنة: 4 انتحال العلامة التجارية: Pendle
03/11/2025 Pendle
Actions API
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 17. قوائم الحظر العامة التي تبلغ عن تطابق: 4. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
ملخص التقرير

pendle-airdrop.finance — المحتوى غير متوفر. انتحال العلامة التجارية: Pendle; نوع الاحتيال: Fake Airdrop; Drainer: Angel Drainer. ملخص الأدلة: VirusTotal 17/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); URLQuery 100 det.; URLScan malicious verdict; 4 external blocklist matches; PhishDestroy score 100/100. مسجّل النطاق: US-ZHOUTI-NET-01 (ASN:….

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة

حرج
الدرجة
100/100

The domain pendle-airdrop.finance has been identified as a high-risk crypto drainer phishing site. Analysis confirms it operates under the specific threat category of a cryptocurrency drainer, designed to illicitly extract digital assets from victims by impersonating the Pendle protocol. As of the latest assessment, the domain is offline, though prior activity indicates it was actively targeting users through fraudulent airdrop promotions. Infrastructure analysis reveals the domain was registered through US-ZHOUTI-NET-01 (ASN: 400992) and resolved to the IP address 23.177.185.92, hosted within the United States under AS400992 ZhouyiSat Communications. Security vendors flagged the domain in 17 of 95 VirusTotal scans, indicating widespread detection as malicious. The site appears on five independent security blocklists, further corroborating its classification as a threat. The absence of an SSL certificate and the use of the Angel Drainer kit align with known tactics employed in crypto drainer campaigns. The page title, 'Airdrop | Pendle,' was explicitly designed to deceive users into believing the site was an official Pendle promotion. Current status confirms pendle-airdrop.finance has been taken offline, though residual risk remains for users who may have interacted with the domain prior to its deactivation. Organizations and individuals are advised to block the domain and its associated IP address at the network level to prevent accidental access. Users who engaged with the site should immediately revoke any connected wallet permissions and monitor their accounts for unauthorized transactions. Given the high-risk nature of crypto drainers, proactive measures such as reviewing recent transaction histories and enabling multi-factor authentication on critical accounts are strongly recommended.

VirusTotal
VirusTotal
17 det.
URLQuery
URLQuery
100 det.
العمر
1.2 yr
الحالة المرصودة
المحتوى غير متوفر
PhishDestroy
قائمة الإتلاف
مدرج
نطاق تغطية البيانات VirusTotal 17 / 95 URLQuery 100 det. PhishStats checked — no match recorded OTX no community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict malicious TLS لا توجد بيانات للشهادة WHOIS 15 mo old لقطة شاشة 2 captures · 2 sources

Forensic History & Detection Timeline

This timeline displays historical security and status checkpoints observed by the PhishDestroy automated monitoring network. It records domain lifecycle updates, scanner changes, and threat telemetry over time.
  1. Cloudflare Radar Scan Mar 7, 2026 · 15:20 UTC
    Cloudflare Radar scan registered: View Radar report.

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
14/15

حالة قوائم الحظر العامة

تحليل الكشف والتهرب

فحص التمويه وتوزيع حركة المرور

لم يُلاحظ لم يُلاحظ وجود أي إخفاء في المسح المخزّن

الملاحظات المخزنة المتعلقة بالمقارنة بين برامج الزحف والمتصفح لهذا المضيف، بالإضافة إلى فحص مباشر للبصمة الرقمية لأنظمة توزيع حركة المرور على غرار «كيتارو».

علامة التخفي المخزنة
لم يُلاحظ
درجة الإخفاء
0/6
آخر فحص للتخفي

ملاحظة خاصة بالماسح الضوئي: dns_error: raw=dns_error; via=local_dns_prefilter

التحقق المباشر من بصمات الأصابع عبر تطبيق «TDS»
سبع بصمات «كيتارو» بالإضافة إلى مقارنة بين المتصفح المتنقل والمتصفح العادي، يتم تشغيلها من الماسح الضوئي PhishDestroy عند فتح هذه اللوحة.
الانتظار

لقطة محفوظة · 2 sources

عنوان الصفحة
Airdrop | Pendle
Impersonates
MetaMask Pendle

معلومات النطاق

النطاق
URLScan Verdict ضار score 100 Phishing report ↗
Wallet IoCs 2 format-validated 0x0e1C5509B503358eA1Dac119C1D41… 0x5b4B1Bcc2FABC35b475432255150F…
الخادم / ASN nginx/1.24.0 (Ubuntu) · AS400992 ZHOUYISAT-COMMUNICATIONS, VI
سمعة عنوان IP abuse score 0/100 0 reports checked 18/06/2026
مسجّل النطاق US-ZHOUTI-NET-01 (ASN:…
جهة الإبلاغ عن إساءة الاستخدامdomainadmin@dnspod.com
البحث في قاعدة بيانات WHOISICANN RDAP لـ pendle-airdrop.finance →
عنوان IP 23.177.185.92 US
الموقع الجغرافيUS Fremont, US
الشبكةAS400992 · ZhouyiSat Communications
التسجيلتم إنشاؤه 28/06/2025
الوقت حتى أول تعذّر للوصول 112 days
ما الذي نحتسبه الوقت المنقضي من أول تقرير عن إساءة الاستخدام المخزن إلى الملاحظة الأولى بأن المحتوى غير متوفر. هذا لا يحدد السبب.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل التقنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف03/11/2025
DOM Analysisanalyzed 24/03/2026score 25/1002 brand signals
IoC Extractionscanned 02/08/20262 wallet · 0 Telegram IoCs
Submitted URLhttp://pendle-airdrop.finance/
خوادم الأسماءa.dnspod.comb.dnspod.comc.dnspod.com
TLS Observationvalid from 02/11/2025scanned 10/04/2026
ICANN OVERSIGHT

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

17 / قام موردو الأمان 95 بوضع علامة على هذا المجال
View on VT
Last analyzed
ADMINUSLabs
alphaMountain.ai
BitDefender
CyRadar
ESET
Forcepoint ThreatSeeker
Fortinet
G-Data
Google Safebrowsing
كاسبرسكي
Lionic
Phishing Database
Seclookup
SOCRadar
سوفوس
VIPRE
Webroot

نطاقات متشابهة

٣٦ نطاقًا متشابهًا محفوظًا

penclle.finance homoglyph تقرير داخلي pendlme.finance insertion تقرير داخلي endle.finance omission epndle.finance transposition oendle.finance replacement p.endle.finance subdomain pandle.finance bitsquatting pebdle.finance replacement pedndle.finance insertion peendle.finance repetition pemdle.finance homoglyph pemndle.finance insertion
عرض الكل (24)
penddle.finance repetition pendele.finance insertion pendie.finance homoglyph pendile.finance homoglyph pendke.finance replacement pendle-finance.com various pendlefinance.com various pendlew.finance addition pendlr.finance replacement pendlw.finance replacement pendmle.finance insertion penfle.finance bitsquatting penmdle.finance insertion pensle.finance replacement pentle.finance bitsquatting plendle.finance insertion pnedle.finance transposition poendle.finance insertion pwndle.finance replacement pzndle.finance replacement pendlea.finance addition pendled.finance addition pendlen.finance addition pendler.finance addition

بلاغات المجتمع

أبلغ عنه عضو واحد في المجتمع؛ شوهد أول مرة في 03/11/2025

البلاغات المحفوظة
1
عناوين URL الفريدة المبلغ عنها
1
مقبول1

الأدلة والتقارير الخارجية

نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/pendle-airdrop.finance"
  title="PhishDestroy threat report for pendle-airdrop.finance"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>