airdrops-commu[.]io
“Airdrop Resources Loading”
airdrops-commu.io — Непроверенный. Тип мошенничества: Airdrop Scam. Сводка доказательств: VirusTotal 1/91 (Gridinsoft); Spamhaus DBL_SPAM; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 78/100.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
On 24 July 2026 analysts observed the domain airdrops-commu.io, registered on 27 May 2026, being used in a crypto‑drainer campaign that masquerades as a legitimate airdrop distribution. The site returns HTTP 200 and presents the page title “Airdrop Resources Loading”. Technical fingerprinting identified the server as Ubuntu running Nginx, but no SSL certificate details were disclosed. The page is associated with the “Airdrop Scam” phishing kit, and the activity is classified as a fake‑airdrop scam. VirusTotal scanned the domain and recorded a single positive detection out of 91 security vendors, indicating at least one vendor flagged the site as malicious.
Independent blocklist aggregators have added the domain to three distinct blocklists, and it is actively blocked by the PhishDestroy, MetaMask, and SEAL filtering solutions. The domain is currently taken offline, and its risk level has been elevated. Analysis indicates that the infrastructure was short‑lived, consistent with the recent registration date, and that the primary threat vector targets cryptocurrency users by prompting them to connect a wallet or provide private keys under the pretense of receiving an airdrop. No further intelligence on hosting IP addresses, ASN, or geographic location is available from the provided data.
Consequently, the full scope of the campaign, including potential victim count or additional related domains, remains uncertain. Defenders should continue to block airdrops-commu.io at perimeter and endpoint layers, monitor for traffic to the identified hosting stack (Ubuntu/Nginx) and for the “Airdrop Resources Loading” page title in web‑proxy logs, and update threat‑intelligence feeds with the observed indicators. Organizations that manage cryptocurrency wallets should educate users about unsolicited airdrop offers and enforce policies that prohibit the entry of private keys into untrusted web pages.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
Технологии · 2 identified
Ubuntu is a free and open-source operating system on Linux for the enterprise server, desktop, cloud, and IoT.
www.ubuntu.com 100% уверенностиNginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% уверенностиАнализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание