algo-reward[.]top
“Algorand Governance”
algo-reward.top — Контент недоступен (HTTP 502). Олицетворение бренда: Foundation; Тип мошенничества: Wallet/seed Phishing. Сводка доказательств: VirusTotal 3/93 (alphaMountain.ai, Fortinet, Sophos); 3 external blocklist matches (Polkadot, Enkrypt, Codeesura); PhishDestroy score 74/100.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This analysis documents the malicious infrastructure associated with the domain algo-reward.top, observed as a brand‑impersonation campaign targeting the Algorand Foundation. The domain was registered on February 21 2026 and currently resolves to IP address 104.21.48.65, an address owned by AS13335 Cloudflare, Inc. in the United States. TLS termination is provided by a certificate identified as WE1, indicating a valid‑looking HTTPS endpoint. The site’s HTML title is "Algorand Governance," which aligns with the declared scam type of wallet/seed phishing and reinforces the impersonation of the Algorand Foundation.
The domain appears on four independent security blocklists—PhishDestroy, Polkadot, Enkrypt, and Codeesura—demonstrating that multiple threat‑intel feeds have flagged it as hostile. VirusTotal analysis shows that three of ninety‑three scanning engines have raised detections, further corroborating malicious intent. No additional public threat‑intel sources such as OTX or Google Safe Browsing entries are cited in the available data. At the time of reporting (July 24 2026) the domain is listed as offline, suggesting the operators have taken the site down or are temporarily disabling it.
However, the underlying hosting on Cloudflare and the presence of a valid TLS certificate mean the infrastructure could be re‑activated quickly. Defenders should continue to block the domain at DNS and proxy layers, monitor the associated IP range for any re‑use, and consider adding the domain to internal URL filtering lists. Ongoing vigilance is advised to detect any resurgence of the wallet/seed phishing page, especially given the limited public content analysis available.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание