azuro-app-airdrop[.]pages[.]dev
“$AZUR Airdrop - Azuro App”
azuro-app-airdrop.pages.dev — Непроверенный. Тип мошенничества: Fake Airdrop. Сводка доказательств: VirusTotal 2/91 (alphaMountain.ai, Gridinsoft); 2 external blocklist matches (ScamSniffer, Enkrypt); PhishDestroy score 83/100. Регистратор: Cloudflare.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Domain azuro-app-airdrop.pages.dev is currently active and engaged in a brand impersonation scam targeting Airdrop Scam. This campaign leverages deceptive tactics to deceive users into divulging sensitive information or transferring cryptocurrency. The threat actor behind this operation has registered the domain through Cloudflare, Inc., and utilizes Cloudflare's infrastructure to host malicious content. The campaign's current status remains active, with ongoing efforts to propagate the fraudulent domain across unsuspecting users. This domain resolves to IP address 172.66.47.65 and has been flagged by 1 of 95 VirusTotal security vendors, indicating a low but notable detection rate. The domain is registered through Cloudflare, Inc., leveraging the company’s reputation to evade initial scrutiny. It has appeared on 2 distinct security blocklists, further validating its malicious nature. Despite its malicious intent, the domain holds valid SSL certification via Google Trust Services, employing a facade of legitimacy to gain user trust. Its recent registration and low detection rate suggest an evolving threat actively seeking to compromise unsuspecting users. Given its active status and deployment on Cloudflare infrastructure, this domain poses an elevated risk to users engaging with it. Immediate action is recommended to block azuro-app-airdrop.pages.dev at the network perimeter and endpoint levels. Organizations should update their threat intelligence feeds and firewall rules to prevent access to this domain. Additionally, users should be warned against interacting with unsolicited airdrop-related communications and verify the authenticity of any airdrop campaigns through official channels. Security teams are advised to monitor for related infrastructure or domains that may emerge as this campaign continues to evolve.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Анализ VirusTotal
Доказательства и внешние отчеты
“angel drainer”
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание