aintuitions[.]live
“Aintuitions.live – Best Investment”
Résumé des preuves
PhishDestroy identifies the domain www.aintuitions.live as an active airdrop phishing scam site, currently under investigation but already confirmed malicious. The site masquerades as a cryptocurrency airdrop platform, luring victims with false promises of token distributions to harvest wallet credentials and private keys. No specific drainer kit has been publicly linked to this domain yet, though infrastructure overlaps with known crypto-scam operations are being analyzed. The domain’s naming—'aintuitions'—suggests an attempt to impersonate intuitive or trusted platforms, possibly targeting users familiar with blockchain ecosystems. Registrant details remain obscured, indicating privacy protection or spoofed ownership.
Technical indicators confirm elevated risk: VirusTotal detection score is 0/95, with no antivirus or security vendor flagging the site as of the latest scan. The domain resolves to IP address 37.27.55.44 and uses a legitimate Let's Encrypt SSL certificate to appear trustworthy. WHOIS data shows recent creation with privacy protection enabled, and Google Safe Browsing (GSB) has not yet blacklisted the domain. This places it in a high-risk window, exploitable by threat actors before automated defenses catch up. The registrar is Namecheap, a common platform for short-lived malicious domains.
As of today, the domain remains active and accessible, with no takedown or blocklisting observed. PhishDestroy recommends immediate network-level blocking of 37.27.55.44 and domain denial at DNS and proxy levels. Users are advised to avoid interacting with the site and to verify any airdrop offers through official project channels. Remaining risk is high due to low detection coverage and active operation, emphasizing the need for rapid community and vendor response to prevent further victimization.
Data Coverage
Signaux de sécurité
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 11/08/2026
10 sources externes surveillées Aucune correspondance
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies
7 technologies identifiées avec une forte confiance
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif