liquidscan-claim[.]vercel[.]app
“$LQSCAN Airdrop by LiquidScan”
Resumen de las pruebas
On July 24, 2026 the domain liquidscan-claim.vercel.app was observed hosting a page titled “$LQSCAN Airdrop by LiquidScan”. The site was registered on February 21, 2026 through Tucows Domains Inc. and resolves to the IP address 216.198.79.131, which belongs to Amazon.com, Inc. (AS16509) and is hosted on the Vercel platform. HTTPS is enforced via HSTS and the TLS certificate is issued by Google Trust Services under the WR1 authority, indicating a valid certificate chain. The HTTP response returned status code 451, confirming that the content was unavailable at the time of testing.
Analysis of the page title and the “Airdrop Scam” kit classification suggests the operator is attempting a fake cryptocurrency airdrop to lure victims into disclosing private keys or sending funds. Threat intelligence feeds have placed the domain on five security blocklists, including PhishDestroy, ScamSniffer, Polkadot, Enkrypt, and Codeesura. VirusTotal scans show three of ninety‑three security vendors flagged the domain, providing additional corroboration of malicious intent. No public Safe Browsing or OTX entries were supplied, and the limited exposure window (offline status) prevents direct observation of payloads or credential‑harvesting forms.
Consequently, the precise techniques used to exfiltrate assets remain uncertain, as does the identity of any associated command‑and‑control infrastructure. Defenders should immediately block resolution of liquidscan-claim.vercel.app at network perimeters and add the IP 216.198.79.131 to deny‑list rules. Email security gateways should be tuned to detect references to “LQSCAN” or “LiquidScan” airdrop promises, and users should be warned that any unsolicited offers claiming free LQSCAN tokens are fraudulent. Continuous monitoring of the hosting provider Vercel for new domains employing the same kit is advised, and incident response teams should be prepared to investigate any related wallet address disclosures that may arise from this campaign.
Data Coverage
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 13/08/2026
6 fuentes externas supervisadas Sin coincidencias
Cronología de detección
-
Estado del dominio
Accesible → Inaccesible
-
Cloudflare Radar
Análisis de Cloudflare Radar almacenado · Abrir análisis
Tecnologías
2 tecnologías identificadas con alta confianza
Análisis de VirusTotal
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.