Recherchez les domaines surveillés et consultez les preuves enregistrées, les détections et les dernières informations relatives à leur disponibilité.
196,408
Total suivi
196,407
VT détecté
94,367
Dernière connexion : actif
99,909
Indisponible lors de la dernière vérification
1
VT En attente
How This Attack Works
Fake Airdrop Scams exploit the burgeoning interest in cryptocurrencies by deceiving users into believing they are receiving free tokens.
STEP 1
Bait with Free Tokens
Scammers create fake websites promising free cryptocurrency airdrops to lure victims.
STEP 2
Collect Personal Data
Users are prompted to enter personal details or connect their crypto wallets to receive the airdrop.
STEP 3
Execute a Scam Transaction
Once connected, scammers initiate unauthorized transactions or steal sensitive data.
STEP 4
Disappear with the Loot
Scammers transfer stolen funds to anonymous accounts, disappearing without a trace.
Technical Analysis
Fake Airdrop Scams often involve sophisticated phishing techniques. Attackers use clone websites that mimic legitimate airdrop events. These sites are built using JavaScript and HTML to create convincing interfaces. Scammers may employ smart contract functions such as 'transfer' and 'approve' to gain unauthorized access to victims' wallets. Additionally, phishing emails and social media posts are used to drive traffic to these malicious websites. Infrastructure often involves domaines enregistrés via top registrars like NICENIC INTERNATIONAL GROUP CO., LIMITED, ensuring anonymity and making it challenging to track the perpetrators.
Real Cases
The Ethereum Classic Airdrop Scam (2024)
$3.5 million stolen
Scammers created a fake Ethereum Classic airdrop event, stealing millions from unsuspecting users.
Fake Uniswap Airdrop (2023)
$2 million stolen
A bogus Uniswap token airdrop fooled users into relinquishing control of their wallets.
The Polkadot Giveaway Fraud (2024)
$1 million stolen
A fake Polkadot giveaway led to substantial financial losses for crypto enthusiasts.
How to Detect
Unsolicited messages about free airdrops
Domaines with unusual TLDs like .xyz and .top
Requests for private keys or wallet access
Poorly designed websites with typos
Urgent calls-to-action pressuring immediate response
How to Protect Yourself
1
Verify airdrop legitimacy through official channels
2
Avoid clicking on unsolicited links
3
Use hardware wallets for extra security
4
Enable two-factor authentication
5
Regularly update software and security protocols
Frequently Asked Questions
Data sourced from PhishDestroy threat intelligence database — 6,268 domains tracked for this threat type
Fake Airdrop Scam 6,268 domains

iryis.xyz

isv-global.org

jeremycahentoken.com

jitoget.xyz

join-franklinsturtle.xyz

join-nyans.xyz

join-ploi.xyz

join-trolls.xyz

jup-dex.lol

jup-exchange.icu

jup-receive.live

jup-wet-drop.top

jupags.pages.dev

jupcoin-x.org

jupiter-allocation.com

kashsolana.fun

katana.lat

l2nft.top

l2web.top

ledestart.gl

ledger-en.live

ledger.fintrack.link

lightertrade.live

lineaslive.com

live-bitcoinos.space

live-hyperliq.xyz

lobstar-sol.live

lobstarsolana.net

lobstarwildeai.com

m336.pages.dev

maestrobotsrward.com

magavoice.info

magilo.pages.dev

marinaderewards.live

massdropmultisenderapp.xyz

mastebot.network

masterb0t.com

masterb0t.xyz

masterbot.trade

megarebel.app

megarebels.com

merkl.sale

metadaos.xyz

metamasak.online

meteora-claim.top

meteoraclaim.com

mezoairdrop.xyz

mgn.mintpad.org

midnight-casino.vercel.app

mikasol.live

millycoin.site

monad-calculator.swishi.xyz

monkeyairdrop.online

mountain.xsolana.cc

mycloudwallets.vercel.app

myxfinancelive.xyz

myzoompay.net

naiholder.uno

nansenpresale.xyz

newfazaanow.com

normoids.free-meme.fun

notwifgary.xyz

novanexus.live

o-redirecting.com

openairdrop.sbs

openclaw-enroll.com

oreproject.top

org-airdrop.com

paintswaps.io

pancake-sw.app

pandu.x-sol.us

panelserver1c0nnect.live

payai.live

peaq.bet

peaq.vu

pedgy.memes-community.xyz

penguin.offcoin.one

penguin.solgrid.trade

phan.beer

plasmafdn.xyz

polymarket-dashboard.com

polymarket.com.internal.trading

poolshib.web.app

praivox.pro

presale-securywallet.com

primaldrop.net

psyopanimesol.fun

psyopanimesol.lol

pulse.qa.circle.colligence.in

pump-gift.fun

pump.7drop.top

pumpairdrop.live

pumpfun-airdrop.pages.dev

pumpfun-booster.com
Processus de réponse aux menaces Pipeline
Comment chaque domaine de cette plateforme est vérifié et comment les menaces confirmées sont neutralisées. Visualisation complète du pipeline →
Contrôles relatifs aux renseignements sur les menaces— chaque domaine est analysé et soumis à une vérification croisée par rapport à :
urlscan.ioCapture d'écran · DOM · HTTPVirusTotal90+ AV enginesGoogle Safe BrowsingTransparency RapportCloudflare RadarDNS · certs · categoriesAlienVault OTXThreat-intel pulsesWayback MachineHistorical evidenceabuse.ch ThreatFoxIOC correlationcrt.shCertificate TransparencyDNS Sécurité FiltersQuad9 · AdGuard · CleanBrowsingWeb-VérifierFull surface scan
Synchronisation mondiale des fournisseurs— les détections confirmées sont transmises à 29 partenaires :
GoogleSafe BrowsingGoogleWeb Risk APIMicrosoftSmartScreenVirusTotalDetection feedCloudflareRadar / 1.1.1.1YandexSafe BrowsingURLScan.ioPublic scanESETWebGuardBitdefenderThreat exchangeNortonSafe WebSymantecÉvaluation du siteAviraCloud detectionAvast / AVGWeb ShieldKasperskyOpenTIPDr.WebOnline scannerNetcraftRetrait APIPhishTankVerified voteAPWG eCXBulk feedPhishStatsOpen feedPhish.RapportHosting abuseSpamhausDBL feedPolySwarmMarketplaceCheckPhishBolster scanQutteraMalware scanURLquerySandboxCriminal IPAsset intelCRDFThreat CenterScamadviserTrust scoreMyWOTWeb of Trust