Выполняйте поиск по отслеживаемым доменам и просматривайте сохраненные доказательства, данные об обнаружениях и последние данные о доступности.
195,987
Всего отслеженных
195,987
Обнаружено VT
89,032
Последнее появление: активен
108,303
По последним данным — недоступно
0
VT — в процессе рассмотрения
How This Attack Works
Fake Airdrop Scams exploit the burgeoning interest in cryptocurrencies by deceiving users into believing they are receiving free tokens.
STEP 1
Bait with Free Tokens
Scammers create fake websites promising free cryptocurrency airdrops to lure victims.
STEP 2
Collect Personal Data
Users are prompted to enter personal details or connect their crypto wallets to receive the airdrop.
STEP 3
Execute a Scam Transaction
Once connected, scammers initiate unauthorized transactions or steal sensitive data.
STEP 4
Disappear with the Loot
Scammers transfer stolen funds to anonymous accounts, disappearing without a trace.
Technical Analysis
Fake Airdrop Scams often involve sophisticated phishing techniques. Attackers use clone websites that mimic legitimate airdrop events. These sites are built using JavaScript and HTML to create convincing interfaces. Scammers may employ smart contract functions such as 'transfer' and 'approve' to gain unauthorized access to victims' wallets. Additionally, phishing emails and social media posts are used to drive traffic to these malicious websites. Infrastructure often involves доменов, зарегистрированных через top registrars like NICENIC INTERNATIONAL GROUP CO., LIMITED, ensuring anonymity and making it challenging to track the perpetrators.
Real Cases
The Ethereum Classic Airdrop Scam (2024)
$3.5 million stolen
Scammers created a fake Ethereum Classic airdrop event, stealing millions from unsuspecting users.
Fake Uniswap Airdrop (2023)
$2 million stolen
A bogus Uniswap token airdrop fooled users into relinquishing control of their wallets.
The Polkadot Giveaway Fraud (2024)
$1 million stolen
A fake Polkadot giveaway led to substantial financial losses for crypto enthusiasts.
How to Detect
Unsolicited messages about free airdrops
Домены with unusual TLDs like .xyz and .top
Requests for private keys or wallet access
Poorly designed websites with typos
Срочно calls-to-action pressuring immediate response
How to Protect Yourself
1
Verify airdrop legitimacy through official channels
2
Avoid clicking on unsolicited links
3
Use hardware wallets for extra security
4
Enable two-factor authentication
5
Regularly update software and security protocols
Frequently Asked Questions
Data sourced from PhishDestroy threat intelligence database — 6,268 domains tracked for this threat type
Fake Airdrop Scam 6,268 domains

support-coinbase-five.vercel.app

supreformfoundation.org

t-mobile.aorkd.cc

t-mobile.bfsak.cc

t-mobile.foigk.cc

t-mobile.qwxoz.cc

tac.org.airdropsalert.life

texitcointxc.org

tiffany.rewards-nftiff.com

token2049.airdropsalert.life

tokencitrea.xyz

tokenpkocet.com.cn

turbos.airdropsalert.life

umbraproject.xyz

umbraprotect.xyz

uni-distribution.com

unified-mpc.amidoggy.xyz

usdwon.com

usor.digital

uxeesss3xi5lnoakip6vkvkex3rvotfqdclqwcvxyg5fj7mylxhq.g8way.io

v-vpass-jp.casting-sand.com

v-vpass-jp.jzny1681.com

v-vpass-jp.wxzxct.com

vpass-jp.boyanzhixing.com

walrus.airdropsalert.life

waronsol.biz

waronsol.club

web-whataspp.com

web3.ouchyi.bid

wlficoin.life

worldllbertyfinancial.com

ww25.287105-coinbase.com

ww25.340445-coinbase.com

ww25.client.876234-coinbase.com

ww25.fclzfdev.coinbase-pportal.com

ww25.proxy.coinbase-newpassword.com

ww25.ticket-177269-coinbase.com

www3-vpass-jp.polytech-plastics.com

www3-vpass.qdlxgl.com

www3-vpass.wzjnzdm.com

wwwzhgwexpouy.info

xrpflareclaims.xyz

zlp.airdropsalert.life

1drop.click

1inch.app-airdropalert.sbs

2base.cfd

2vulptfpoov5djahqlskqza5v3itx3k2byj7zir5t3m3p2ann46a.g8way.io

account.identifications-coinbase.com

adminapi.jiuzhouw.net

airdapp.click

airdop-hypeliquid.com

airdrop-babylon.live

airdrop-bitgetwallet.live

airdrop-blackwing.live

airdrop-boundless.live

airdrop-defiapp.live

airdrop-derive.live

airdrop-espresso.bet

airdrop-fluence.live

airdrop-gaib.com

airdrop-grvt.live

airdrop-haven1.live

airdrop-layeredge.live

airdrop-sprite.com

airdrop-storyprotocol.live

airdrop-trustwallet.xyz

airdrop.laffala.app

airdroppulse.app

airdropsalerts.app

amlc-crypto.com

amlradar.info

aodefevrgdkhqltdnwgzbyjoywrlbntbhfwq.com

app-backpack.exchange

app.coinbasex.info

app.setus.zone

arihchain.xyz

assethelp.co

astartmdv1.com

aster-governance.com

asterdecks.com

asterdex-transfer.app

asterdex.sale

astserdex.app

aterapanel.com

ateraslog.com

att.mflgn.cc

audius.us

auth.identifications-coinbase.com
Процесс реагирования на угрозы
Как мы проверяем каждый домен в этом разделе и нейтрализуем подтверждённые угрозы. Полная визуализация конвейера →
Проверка по источникам данных об угрозах— каждый домен сканируется и сверяется со следующими источниками:
urlscan.ioСнимок экрана · DOM · HTTPVirusTotal90+ AV enginesGoogle Safe BrowsingTransparency ОтчетCloudflare RadarDNS · certs · categoriesAlienVault OTXThreat-intel pulsesWayback MachineHistorical evidenceabuse.ch ThreatFoxIOC correlationcrt.shCertificate TransparencyDNS Безопасность FiltersQuad9 · AdGuard · CleanBrowsingWeb-ПроверитьFull surface scan
Передача данных партнёрам— подтверждённые детекты передаются 29 партнёрам:
GoogleSafe BrowsingGoogleWeb Risk APIMicrosoftSmartScreenVirusTotalDetection feedCloudflareRadar / 1.1.1.1YandexSafe BrowsingURLScan.ioPublic scanESETWebGuardBitdefenderThreat exchangeNortonSafe WebSymantecОбзор сайтаAviraCloud detectionAvast / AVGWeb Shield«Касперский»OpenTIPDr.WebOnline scannerNetcraftЛиквидация APIPhishTankVerified voteAPWG eCXBulk feedPhishStatsOpen feedPhish.ОтчетHosting abuseSpamhausDBL feedPolySwarmMarketplaceCheckPhishBolster scanQutteraMalware scanURLquerySandboxCriminal IPAsset intelCRDFThreat CenterScamadviserTrust scoreMyWOTWeb of Trust