zreal-claim[.]pages[.]dev
“Z李REAL SUPER COIN | Airdrop”
zreal-claim.pages.dev — सामग्री अनुपलब्ध. ब्रांड प्रतिरूपण: Revolut; घोटाले का प्रकार: Airdrop Scam. साक्ष्य सारांश: VirusTotal 3/93 (ADMINUSLabs, Gridinsoft, Phishing Database); 1 external blocklist match (ScamSniffer); PhishDestroy score 65/100. रजिस्ट्रार: Cloudflare.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
The domain zreal-claim.pages.dev was registered on February 21 2026 through Cloudflare, Inc. and resolves to the Cloudflare‑owned address 172.66.47.133 located in the United States (AS13335). No TLS certificate is presented, indicating that the site was served over plain HTTP before being taken offline. The page title reported by crawlers is “Z李REAL SUPER COIN | Airdrop”, which aligns with the observed phishing kit labeled “Airdrop Scam” and the declared scam type “Fake Airdrop”. VirusTotal has recorded detections from three of ninety‑three scanning engines, confirming that the domain is recognized as malicious by a minority of vendors.
It is also listed on four independent blocklists, including PhishDestroy, MetaMask, ScamSniffer, and SEAL, all of which have explicitly blocked the domain. The combination of a recent creation date, use of Cloudflare’s infrastructure without SSL, and the presence of an airdrop‑related phishing kit suggests an intent to lure cryptocurrency users into submitting private keys or seed phrases, typical of crypto‑drainer campaigns. Because the site is currently offline, live content cannot be verified, and the exact payload or credential‑harvesting mechanism remains unknown. Defenders should continue to deny traffic to the IP 172.66.47.133, enforce blocklist updates that include the four named providers, and monitor for any future re‑registration of the sub‑domain or similar variations.
Additional scrutiny of outbound DNS queries for the “pages.dev” namespace is advised, as attackers frequently reuse Cloudflare‑hosted sub‑domains for fast‑flux deployments. The lack of HTTPS further simplifies detection via network‑level inspection. Organizations that have exposed wallet credentials to this domain should assume compromise and rotate all associated keys immediately.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
वायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।