rewards[.]banana-guy[.]fun
“BananaGuy Coin 🍌”
rewards.banana-guy.fun — Inhalt nicht verfügbar (HTTP 502). Markenidentität: Jupiter; Betrugstyp: Fake Airdrop. Zusammenfassung der Beweislage: VirusTotal 0/93; PhishDestroy score 48/100.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
On 21 February 2026 the domain rewards.banana-guy.fun was registered. The site’s HTML title reads “BananaGuy Coin 🍌”, indicating an attempt to lure cryptocurrency‑interested users with a purported airdrop. The domain appears on a single security blocklist and is actively blocked by the PhishDestroy service. An SSL certificate identified as R13 is present, but the HTTPS endpoint currently returns no content because the site has been taken offline.
VirusTotal records show that the domain was submitted to 93 scanning engines, none of which raised a detection at the time of analysis. The limited evidence points to a “Fake Airdrop” scam, a common social‑engineering technique that promises free tokens in exchange for credential submission or wallet access. No additional infrastructure details such as hosting IP, ASN, or registrar are provided, and no safe‑browsing or OTX entries have been observed. Because the site is offline, active probing is not possible, leaving uncertainty around the full payload and any associated command‑and‑control infrastructure.
Defenders should continue to monitor the domain for re‑appearance, add it to internal blocklists, and ensure that any user‑facing services that reference “BananaGuy Coin” or similar airdrop promises are flagged for review. Network traffic to the domain’s IP range should be logged and, if observed, terminated. Security teams are advised to educate users about unsolicited airdrop offers and to verify the legitimacy of cryptocurrency promotions through official channels.
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
VirusTotal-Analyse
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt