airdrop-blockstreet[.]live
airdrop-blockstreet.live — Контент недоступен. Тип мошенничества: Airdrop Scam. Сводка доказательств: VirusTotal 13/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLQuery 1 alert; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 93/100. Регистратор: PDR.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, airdrop-blockstreet.live, is assessed as a high-risk crypto drainer phishing site, currently offline as of July 23, 2026. Infrastructure analysis reveals it was registered on March 14, 2026, through PDR Ltd. d/b/a PublicDomainRegistry.com, a registrar frequently associated with fraudulent domains. The site resolves to Cloudflare IP 172.67.163.40 (AS13335, US), leveraging Cloudflare’s infrastructure for anonymity and resilience, including HSTS, HTTP/3, and Cloudflare Browser Insights. The SSL certificate is issued by Let’s Encrypt (E8), a common choice for both legitimate and malicious sites due to its free and automated issuance process. Detection data indicates the domain is flagged by 13 of 91 security vendors on VirusTotal, a significant indicator of malicious activity.
It appears on three security blocklists and is actively blocked by PhishDestroy, MetaMask, and SEAL, which specialize in crypto-related threats. The page title 'Just a moment...' suggests the use of Cloudflare’s interstitial page, likely employed to filter or delay access while evading automated detection tools. The domain’s classification as a 'Crypto Scam' aligns with its association with crypto drainer activity, where victims are tricked into connecting wallets to malicious smart contracts that drain funds. Defenders should treat this domain as confirmed malicious based on its detection history, blocklist presence, and association with known crypto threat mitigators.
The use of Cloudflare nameservers (karl.ns.cloudflare.com, bristol.ns.cloudflare.com) and its hosting on a shared IP further complicates attribution but does not diminish the risk. While the site is currently offline, defenders should monitor for reactivation or related domains using similar naming conventions (e.g., 'airdrop-' prefixes) or infrastructure patterns. No evidence of a specific brand imitation is present in the available data; the scam type is strictly tied to cryptocurrency theft.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | airdrop-blockstreet.live |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 4 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of airdrop-blockstreet.live · checked Mar 15, 2026
Доказательства и внешние отчеты
PD-20260314-A06284 Recipient: abuse@publicdomainregistry.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание