swift-oxygen-wide[.]on-fleek[.]app
“Special Member Giveaway”
swift-oxygen-wide.on-fleek.app — 확인되지 않음. 사기 유형: Fake Giveaway. 증거 요약: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); 4 external blocklist matches; CF Radar malicious; PhishDestroy score 95/100. 등록기관: 1API.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
This domain, swift-oxygen-wide.on-fleek.app, is flagged as an active phishing site targeting users through a fraudulent giveaway scheme. Analysis of the page title, "Special Member Giveaway," indicates an attempt to lure victims with false promises of rewards or exclusive offers. The domain is currently resolving to IP address 172.67.73.189, hosted on infrastructure belonging to Cloudflare, Inc. (AS13335), a common tactic to obscure the true origin of malicious activity. The site employs a Let's Encrypt SSL certificate, which while providing encryption, does not validate the legitimacy of the content being served. Infrastructure analysis reveals the domain is registered through 1API GmbH and utilizes Cloudflare nameservers, specifically rihana.ns.cloudflare.com and scott.ns.cloudflare.com. The HTTP status code 301 suggests a redirect mechanism may be in place, potentially rerouting victims to additional malicious endpoints. As of July 12, 2026, the domain appears on five security blocklists and is flagged by 12 out of 95 security vendors in VirusTotal, confirming its classification as high-risk. The exact nature of the phishing kit or the specific brand being impersonated remains unconfirmed, as no additional technical indicators beyond the page title are currently available. Defenders should treat this domain as actively malicious and prioritize blocking it at the network level. The use of Cloudflare infrastructure complicates traditional IP-based blocking, so DNS-level or domain-based restrictions are recommended. Organizations should monitor for any internal traffic attempting to connect to this domain, as it may indicate compromised endpoints or users who have engaged with the phishing lure. While the giveaway theme is evident from the page title, the absence of further details means defenders should remain vigilant for secondary payloads or follow-on attacks, such as credential harvesting or malware distribution, which may occur post-redirect.
네트워크 보안 인텔리전스
위협 대응 Pipeline
공개 차단 목록 상태
저장된 캡처
도메인 인텔리전스
기술적 세부 사항DNS, SSL SAN, 타임스탬프
ICANN OVERSIGHT
Registration: on-fleek.app
인증 및 RAA 상황
인증 및 RAA 상황
Registrar accreditation and DNS abuse obligations
For the registrable domain on-fleek.app behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
사용 기술 · 1 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comVirusTotal 분석
보관된 증거
증거 및 외부 보고서
“The PhishDestroy system has identified this domain as a phishing threat, flagged both by our internal parser and reported by users. We also cross-reference with public databases and other antivirus systems.”
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.