distributions-rekt[.]com
“$REKT Airdrop”
Zusammenfassung der Beweislage
Analysis of the domain distributions-rekt.com indicates that it was registered on February 21, 2026 and subsequently resolved to the Cloudflare IP address 172.67.180.175, which is associated with ASN 13335 in the United States. The site presented a page titled "$REKT Airdrop" and was identified as employing an Airdrop Scam phishing kit, classifying the activity as a crypto‑related scam. The SSL certificate presented for the site is labeled WE1, confirming that TLS was in use at the time of observation.
Reputation checks show that two out of ninety‑three VirusTotal scanners flagged the domain, and it is currently listed on two security blocklists. Independent blocklist services PhishDestroy and ScamSniffer have both added the domain to their deny lists, reinforcing the assessment of malicious intent. As of the report date, July 24, 2026, the domain is reported offline, suggesting that the active phishing infrastructure may have been taken down or is temporarily unavailable.
Defenders should continue to block traffic to both the domain and the associated IP address, incorporate the domain into existing URL filtering and DNS sinkhole policies, and monitor for any re‑registration or similar domains that reuse the "REKT" branding or the same SSL certificate fingerprint. Because the only publicly available artifact is the page title and kit identification, further content‑level indicators remain unknown; threat hunters should therefore prioritize correlation with any observed outbound connections to Cloudflare‑hosted IPs that match the listed address and watch for repeat usage of the Airdrop Scam template in future campaigns.
Data Coverage
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Blocklistenabdeckung
10 überwachte externe Feeds · gespeicherter Stand 12.08.2026
VirusTotal-Analyse
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt