river-dmt[.]pages[.]dev
“River Pts S4 Airdrop”
Resumo das evidências
This domain, river-dmt.pages.dev, is currently under investigation for brand impersonation targeting users through an airdrop scam. The site specifically mimics River Protocol, presenting itself as "River Pts S4 Airdrop" to deceive visitors into engaging with fraudulent cryptocurrency distribution schemes. Analysis indicates the domain is designed to exploit trust in legitimate airdrop campaigns, potentially leading to financial loss or credential theft. Infrastructure analysis reveals the domain was registered on June 10, 2026, through Cloudflare Pages, a platform often leveraged for rapid deployment of malicious sites. It resolves to the IP address 188.114.97.3 and employs an SSL certificate issued by Google Trust Services (WE1), which may lend an appearance of legitimacy. Despite its active status, the domain has been flagged by two security blocklists, including PhishDestroy and ScamSniffer. Notably, VirusTotal reports 0 detections out of 95 vendors, suggesting the threat may still be evading widespread detection or is newly deployed. As of the latest assessment, river-dmt.pages.dev remains active and poses an ongoing risk to users. Organizations and individuals are advised to block access to this domain at the network level and update endpoint protection rules to include its IP address and SSL certificate thumbprint. Users should be educated to recognize airdrop scams, particularly those impersonating established protocols, and verify all promotional offers through official channels before engagement. Continuous monitoring of related infrastructure is recommended to identify potential pivot domains or secondary attack vectors.
Data Coverage
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 11/08/2026
9 fontes externas monitoradas Sem correspondência
Inteligência de Domínios
Detalhes técnicosDNS, nomes TLS e datas
Tecnologias
5 tecnologias identificadas com alta confiança
Análise do VirusTotal
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo