eth-rebate[.]pages[.]dev
“2025/2026 Phase 1 ETH Community Airdrop”
साक्ष्य सारांश
This domain, eth-rebate.pages.dev, is actively engaged in brand impersonation targeting cryptocurrency users through a fraudulent airdrop scheme. The page title, '2025/2026 Phase 1 ETH Community Airdrop,' explicitly mimics legitimate Ethereum community initiatives, attempting to deceive users into interacting with malicious smart contracts or disclosing wallet credentials. No direct evidence of a crypto drainer kit has been observed, though the infrastructure aligns with common airdrop scam patterns designed to exfiltrate assets or harvest sensitive data. Analysis indicates the domain was registered through Cloudflare Pages on May 6, 2026, and currently resolves to the IP address 188.114.96.3, hosted under Cloudflare, Inc. in Canada. Detection metrics reveal minimal exposure at present: the domain appears on only one security blocklist, and VirusTotal reports a 0/95 detection rate across its scanning engines. The SSL certificate, issued by Google Trust Services (WE1), provides a veneer of legitimacy but does not mitigate the underlying fraudulent intent. No entries have been recorded in Google Safe Browsing databases as of this assessment. The domain remains operational, posing an ongoing risk to users unaware of the impersonation tactic. Response actions have been limited to partial blocklisting, with no takedown or sinkholing observed. The low detection rate suggests the campaign may still be in an early or evasive phase, potentially targeting niche communities. Users are advised to verify airdrop legitimacy through official Ethereum channels and employ wallet isolation when interacting with unverified smart contracts. Continuous monitoring of this infrastructure is recommended to assess evolving threats.
Data Coverage
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 11/08/2026
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।