corvuslatimerrewardbonus[.]pages[.]dev
“DebbugDappNode”
Zusammenfassung der Beweislage
Analysis as of July 25 2026 indicates that the domain corvuslatimerrewardbonus.pages.dev was registered on March 10 2026 through Cloudflare, Inc. The domain resolves to IP 188.114.96.3, which belongs to AS13335 owned by Cloudflare, Inc. The host is located in the United States. DNS resolution uses Cloudflare nameservers lex.ns.cloudflare.com and maisie.ns.cloudflare.com. The site served an SSL certificate identified as “E7”, and HTTP responses included HSTS and HTTP/3 headers, confirming use of Cloudflare edge services. The only visible artifact from the page is the title “DebbugDappNode”. Intelligence classifies the content as a “Fake Airdrop” scam, a common technique that lures victims with promises of cryptocurrency rewards.
The domain has been flagged by PhishDestroy and appears on a single public security blocklist. VirusTotal scans show that 2 of 94 scanning engines have flagged the domain as malicious, reinforcing the suspicion. The site is currently offline, which limits further in‑depth payload analysis. No additional artifacts such as page HTML, JavaScript, or credential‑stealing forms have been captured, so the exact phishing workflow remains unknown. The presence of Cloudflare’s security features (HSTS, HTTP/3) does not mitigate the malicious intent because they are commonly leveraged by attackers to hide behind reputable infrastructure.
Defenders should continue to block the domain at network perimeter and DNS resolvers. Monitoring for any re‑appearance of the subdomain on Cloudflare’s pages.dev namespace is advisable, as attackers frequently recycle similar URLs. Threat hunting should include correlation of outbound connections to 188.114.96.3 and inspection of logs for attempts to resolve the domain after the offline date. Inclusion of the domain in internal blocklists and sharing of the indicator with industry peers will reduce exposure.
Data Coverage
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Blocklistenabdeckung
10 überwachte externe Feeds · gespeicherter Stand 12.08.2026
Technologien
3 Technologien mit hoher Konfidenz erkannt
VirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of corvuslatimerrewardbonus.pages.dev · checked Mar 15, 2026
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt