aodefevrgdkhqltdnwgzbyjoywrlbntbhfwq[.]com
“CANCER | Airdrop”
aodefevrgdkhqltdnwgzbyjoywrlbntbhfwq.com — Accesible · acceso restringido (HTTP 403). Tipo de estafa: Airdrop Scam. Resumen de las pruebas: VirusTotal 14/91 (ADMINUSLabs, alphaMountain.ai, Bfore.Ai PreCrime, BitDefender, Chong Lua Dao); PhishDestroy score 97/100. Registrador: NiceNIC.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
This domain, aodefevrgdkhqltdnwgzbyjoywrlbntbhfwq.com, is identified as part of an airdrop scam campaign designed to impersonate legitimate cryptocurrency token distributions. The page title, 'CANCER | Airdrop,' suggests an attempt to deceive users into believing they are accessing an official airdrop portal, likely prompting them to connect wallets or disclose private keys under false pretenses. Such schemes typically aim to exfiltrate sensitive credentials or deploy malicious smart contracts to drain digital assets from victims' wallets. The use of emotionally charged or nonsensical titles like 'CANCER' may be intended to evoke urgency or curiosity, increasing the likelihood of user interaction with the fraudulent content.
Analysis of the domain's infrastructure reveals multiple technical indicators of malicious activity. The domain was registered on October 12, 2025, through NiceNIC International Group Co., Limited, a registrar frequently associated with high-risk domains. It resolves to the IPv6 address 2400:52e0:1e00:2::1331:1 and is currently flagged by 16 out of 95 security vendors on VirusTotal, indicating broad detection as a phishing threat. Additionally, the domain appears on one security blocklist and employs technologies such as HSTS, Cloudflare, and HTTP/3, which are often leveraged to obfuscate malicious activity or enhance the perceived legitimacy of the site. The SSL certificate issued by Let's Encrypt further masks the domain's true intent by enabling encrypted connections, a tactic commonly used to evade basic security warnings.
Users who visited aodefevrgdkhqltdnwgzbyjoywrlbntbhfwq.com or interacted with its content should take immediate remedial actions. If wallet credentials were entered, the affected wallet should be considered compromised, and all associated funds should be transferred to a new, secure wallet address. Users are advised to revoke any smart contract approvals granted during the interaction and monitor their accounts for unauthorized transactions. It is also recommended to scan local devices for malware, as phishing sites may deploy additional payloads. To prevent future exposure, users should verify the authenticity of airdrop announcements through official project channels and avoid engaging with unsolicited links or prompts to connect wallets.
Señales de seguridad
Inteligencia de seguridad de red Registrar context
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
ICANN OVERSIGHT
Acreditación y contexto RAA
Acreditación y contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-22 02:40:00 UTC
Tecnologías · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Análisis de VirusTotal
Evidencias archivadas
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of aodefevrgdkhqltdnwgzbyjoywrlbntbhfwq.com · checked Jun 27, 2026
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.