pi-airdrop[.]ct[.]ws
“Pi Network – Get your free pi reward”
pi-airdrop.ct.ws — Belum terverifikasi. Jenis penipuan: Crypto Scam. Ringkasan bukti: VirusTotal 4/91 (alphaMountain.ai, Chong Lua Dao, Gridinsoft, LevelBlue); Spamhaus DBL_PHISH; PhishDestroy score 71/100. Registrar: Namecheap.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Analysis of pi‑airdrop.ct.ws indicates a high‑risk cryptocurrency drainer operation. The site presents the page title “Pi Network – Get your free pi reward,” which is commonly used in fraudulent campaigns targeting users of the Pi Network project. The domain is currently active and classified as a crypto‑drainer, confirming its intent to lure victims into transferring digital assets.
Infrastructure analysis reveals the site is hosted on a server located in the United Kingdom, identified by IP address 185.27.134.34 belonging to AS34119 Wildcard UK Limited. The domain resolves through the Byet.org name server cluster (ns1.byet.org, ns2.byet.org, ns3.byet.org, ns4.byet.org, ns5.byet.org). The web stack consists of WordPress powered by PHP and MySQL, front‑ended by Nginx/OpenResty and enriched with jQuery, jQuery Migrate, and Font Awesome libraries. SSL is provided by ZeroSSL ECC Domain Secure Site CA, indicating a publicly available free certificate.
Reputation signals show a zero‑point trust rating from Gridinsoft, and five out of ninety‑five VirusTotal scanners have flagged the domain as malicious. The site is listed on a single security blocklist and has been actively blocked by the PhishDestroy service. HTTP requests return a 200 status code, confirming the site is serving content without immediate disruption.
Defenders should prioritize immediate containment by adding pi‑airdrop.ct.ws to network blocklists and DNS filtering rules. Continuous monitoring of the associated IP address and its ASN is advised, as the hosting provider may be leveraged for additional malicious domains. Incident response teams should also audit any inbound traffic that references the “Pi Network” reward phrasing, and consider sinkholing the domain to disrupt the campaign’s infrastructure.
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Teknologi · 8 identified
Open-source CMS powering over 40% of websites worldwide.
Open-source relational database management system.
Server-side scripting language designed for web development.
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Web platform based on Nginx with LuaJIT for scalable web apps.
Plugin to detect and restore deprecated jQuery features.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
Icon font library.
Analisis VirusTotal
Bukti Terarsip
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of pi-airdrop.ct.ws · checked Mar 2, 2026
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive