securedappreward[.]xyz
securedappreward.xyz — Konten tidak tersedia (HTTP 502). Jenis penipuan: Fake Airdrop. Ringkasan bukti: VirusTotal 3/95 (Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); 3 external blocklist matches (Polkadot, Enkrypt, Codeesura); PhishDestroy score 74/100.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Analysis of securedappreward.xyz shows a credential‑phishing campaign that leverages a fake airdrop narrative. The domain was registered on February 21, 2026 and is currently taken offline, but historical data indicate it was actively used before removal. The site employed an SSL certificate identified as WE1, which does not provide any inherent trust beyond encryption. Network resolution points to the IP address 172.67.164.235, which belongs to AS13335 operated by Cloudflare, Inc., located in the United States.
This hosting choice is typical for short‑lived malicious infrastructure that benefits from the scalability and anonymity of a content‑delivery network. VirusTotal scans recorded three detections out of ninety‑five security vendors, confirming that at least a subset of scanners flagged the domain for malicious activity. Independent security blocklists, including PhishDestroy, Polkadot, Enkrypt, and Codeesura, have all listed the domain, and it appears on four broader blocklists, reinforcing the consensus that it is associated with phishing. The campaign’s classification as a "Fake Airdrop" indicates it likely promised cryptocurrency rewards to lure credentials, a common social‑engineering vector within the credential‑phishing threat category.
While the exact page content and HTTP response codes have not been disclosed, the available evidence is sufficient for defensive teams to take immediate action. Recommendations include adding securedappreward.xyz to deny‑list policies across DNS, proxy, and endpoint protection solutions, monitoring the associated Cloudflare IP for any resurgence of activity, and reviewing any internal logs for connections to the domain or its IP during the period leading up to its takedown. Continuous re‑evaluation of the IP address is advised, as Cloudflare‑hosted malicious actors may reuse the same address for new campaigns.
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Analisis VirusTotal
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive