flarefdn-events[.]xyz
“Flare — FLR Rewards Vote”
flarefdn-events.xyz — Non verificato. Tipo di truffa: Crypto Drainer. Riepilogo delle prove: VirusTotal 8/91 (Emsisoft, Forcepoint ThreatSeeker, Fortinet, Netcraft, Webroot); CF Radar malicious; PhishDestroy score 83/100. Registrar: NiceNIC.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
This domain is flagged as a high-risk crypto drainer infrastructure, specifically designed to impersonate Flare (FLR) rewards programs. Analysis indicates the site targets cryptocurrency holders by mimicking legitimate Flare token distribution events, tricking users into connecting wallets to malicious smart contracts that siphon funds. The threat type—crypto drainer—poses immediate financial risk, as victims may lose entire wallet balances upon interaction with the fraudulent interface.
Infrastructure analysis reveals the following technical indicators: the domain flarefdn-events.xyz was registered on June 27, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED. It currently resolves to the IP address 188.114.97.3 and remains active despite being flagged by 5 out of 95 security vendors on VirusTotal. The page title, 'Flare — FLR Rewards Vote,' directly references Flare’s branding, reinforcing the impersonation tactic. No reputable blocklists or trust scores currently endorse the domain, and its recent creation date aligns with common phishing campaign timelines.
Mitigation requires immediate action from both users and network defenders. Cryptocurrency holders should avoid interacting with the domain, revoke any connected wallet permissions, and verify official Flare communications through the project’s verified channels. Network administrators are advised to block the domain and its resolving IP (188.114.97.3) at the perimeter, while monitoring for related infrastructure registered under the same registrar. Given the active status of this drainer, proactive wallet audits and multi-factor authentication for crypto-related accounts are strongly recommended to prevent unauthorized transactions.
Informazioni sulla sicurezza di rete Registrar context
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-18 03:02:10 UTC
Tecnologie · 3 identified
Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com Confidenza al 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Confidenza al 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confidenza al 100%Analisi di VirusTotal
Prove archiviate
Dati e relazioni esterne
PD-20260701-5B0625 Recipient: abuse@gen.xyz Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo