MALICIOUS — CRITICAL
srune-airdrop[.]pages[.]dev
This domain, srune-airdrop.pages.dev, is flagged as an active brand impersonation threat specializing in airdrop scams.
- VirusTotal
- 2/91
- Blocklists
- No stored match
- التوفر
- آخر نشاط معروف · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
srune-airdrop.pages.dev — آخر نشاط معروف (HTTP 200). نوع الاحتيال: Fake Airdrop. ملخص الأدلة: VirusTotal 2/91 (alphaMountain.ai, Kaspersky); PhishDestroy score 76/100. مسجّل النطاق: Cloudflare.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
srune-airdrop.pages.dev: Confirmed Airdrop Scam Impersonating
srune-airdrop.pages.dev is an active airdrop scam impersonating TrustPad, luring victims with fake token distributions.
This domain, srune-airdrop.pages.dev, is flagged as an active brand impersonation threat specializing in airdrop scams. Analysis indicates the site mimics TrustPad, a legitimate multi-chain launchpad platform, to deceive cryptocurrency users into connecting wallets under false pretenses of exclusive token distributions. The infrastructure hosts no legitimate airdrop functionality, instead deploying wallet-draining scripts designed to siphon funds from victims' connected crypto wallets. No specific drainer kit signature has been attributed, though behavioral patterns align with common Solana and Ethereum-based scam frameworks. Infrastructure analysis reveals the following technical indicators: the domain was registered on August 22, 2024, through Cloudflare, Inc., and currently resolves to IP address 188.114.97.3, hosted on AS13335. VirusTotal detection shows 2 out of 95 security vendors flagging the domain, while it appears on one security blocklist and is actively blocked by PhishDestroy. The SSL certificate is issued by Google Trust Services (WE1), and the page title explicitly references 'Airdrops on TrustPad, The Exclusive Multi-Chain Airdrops,' reinforcing the impersonation narrative. No Google Safe Browsing (GSB) flags were observed at the time of assessment. The domain remains active as of this analysis, with no takedown or suspension measures implemented by the hosting provider. Users are advised to avoid interaction, as the site continues to serve malicious payloads to unsuspecting visitors. The remaining risk is classified as high due to the persistent operational status and targeted nature of the scam. Cryptocurrency holders should verify airdrop legitimacy through official project channels and employ wallet security measures, such as hardware wallets or isolated browser sessions, when engaging with token distributions. Continuous monitoring of related infrastructure is recommended to track potential shifts in hosting or domain registration patterns.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
نطاق تغطية البيانات12 recorded checks
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
تحليل VirusTotal
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.