airdrop-rewards[.]pages[.]dev
“Suspected Phishing | Cloudflare”
airdrop-rewards.pages.dev — Acessível · acesso restrito (HTTP 403). Representação da marca: Airdrop Scam; Tipo de golpe: Airdrop Scam. Resumo das evidências: VirusTotal 14/91 (alphaMountain.ai, BitDefender, CyRadar, ESET, Emsisoft); 3 external blocklist matches (MetaMask, ScamSniffer, SEAL); CF Radar malicious; PhishDestroy score 92/100. Registrador: Cloudflare Pages.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Analysis of airdrop-rewards.pages.dev shows that the domain was registered on June 01, 2026 via Cloudflare Pages and resolves to the IPv4 address 188.114.96.3. The site is currently classified as a crypto drainer, with a high risk rating and an active status. Independent scanning on VirusTotal returned 14 positive detections out of 91 submitted security engines, indicating that multiple antivirus and URL‑reputation products have identified malicious behavior associated with the domain. The domain also appears on four external blocklists, and it has been explicitly blocked by commercial protection services including PhishDestroy, MetaMask, ScamSniffer, and SEAL.
These overlapping signals suggest a concerted effort to distribute cryptocurrency‑draining payloads or lure victims into authorizing malicious transactions. The infrastructure choice of Cloudflare Pages provides legitimate‑looking hosting while concealing the true origin of the malicious content, and the public IP address 188.114.96.3 is shared among other abuse reports, which complicates attribution. No additional evidence such as SSL certificate details, HTTP response codes, or page titles is presently available, limiting the depth of fingerprinting.
Defenders should add the domain and its resolved IP to deny‑list rules, monitor for any outbound connections to the address, and enforce multi‑factor authentication and transaction‑confirmation prompts for wallet‑related activities. Continuous re‑inspection of the domain on VirusTotal and blocklist feeds is recommended, as the threat actor may alter hosting or deploy new tactics. Organizations that handle cryptocurrency transactions should treat any request originating from this domain as malicious and block it at the network perimeter.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% de confiançaCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% de confiançaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% de confiançaAnálise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of airdrop-rewards.pages.dev · checked Jul 29, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo