standx-bonuses[.]app
Résumé des preuves
Analysis of standx-bonuses.app, observed on July 25, 2026, classifies the site as a fake‑airdrop phishing vector. The domain is registered through Cloudflare, Inc. and utilizes Cloudflare’s DNS infrastructure (louis.ns.cloudflare.com, veronica.ns.cloudflare.com). DNS resolution points to IP 172.67.198.103, which belongs to AS13335 Cloudflare, Inc. and is geolocated in the United States. No TLS certificate is presented, indicating that HTTPS is not enforced. The HTTP response delivers a page whose title is “Just a moment…”, a common placeholder used by Cloudflare’s challenge page, and no additional content has been captured.
Security telemetry shows that PhishDestroy has blocked the domain, and one external blocklist currently lists it as malicious. VirusTotal scans returned six positive detections out of ninety‑five AV engines, confirming that multiple vendors consider the host suspicious. Gridinsoft assigns a trust score of 0 out of 100, reinforcing the malicious assessment. The site’s current status is offline, which may be the result of takedown actions or temporary hosting changes.
Evidence confirms the fake‑airdrop narrative, but the exact phishing kit, targeted brand, or victim interaction flow remain unverified because the page content was not retrieved beyond the title. Defenders should continue to block the domain at network perimeters, update URL filtering lists with the observed IP and hostname, and monitor for any re‑appearance using the same Cloudflare nameservers. Additional scrutiny of traffic to 172.67.198.103 is advisable, as Cloudflare‑hosted infrastructure can be repurposed for unrelated campaigns. Ongoing collection of payloads, if the site resurfaces, will be required to enrich attribution and to develop detection signatures.
Data Coverage
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 13/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse forensique
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif