get-smile[.]xyz
“SMILE — Airdrop Claim”
get-smile.xyz — Контент недоступен. Олицетворение бренда: Genericcrypto; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 17/94 (Forcepoint ThreatSeeker, Kaspersky); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100. Регистратор: PDR.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, get-smile.xyz, is confirmed as a high-risk brand impersonation site designed to execute an Airdrop Scam. Analysis indicates the domain mimics legitimate cryptocurrency airdrop campaigns, specifically targeting users of the SMILE token or similarly named projects. The page title, 'SMILE — Airdrop Claim,' reinforces the deception by presenting a fabricated opportunity to claim tokens, a common tactic in crypto-related fraud. No legitimate association with any verified blockchain project or token distribution has been established, and the domain lacks any credible authentication mechanisms such as SSL certification or verified ownership records. Infrastructure analysis reveals the following technical indicators: the domain was registered on March 23, 2026, through PDR Ltd. d/b/a PublicDomainRegistry.com, a registrar frequently exploited for malicious registrations. It resolves to the IP address 188.114.97.3, hosted by a provider known for anonymized services. VirusTotal detection metrics show 17 out of 95 security vendors flagging the domain as malicious, while it appears on three independent security blocklists. The domain is proxied behind CloudFlare, obscuring its true origin and complicating attribution. No SSL certificate is present, further reducing its legitimacy and increasing the risk of unencrypted data interception. As of the latest assessment, get-smile.xyz has been taken offline, likely due to enforcement actions by security providers or hosting interventions. However, the risk of re-emergence remains elevated given the domain's recent creation date and the persistent demand for cryptocurrency scams. Users who interacted with the site are advised to revoke any connected wallet permissions, monitor for unauthorized transactions, and verify token contracts through official project channels. Organizations should update blocklists to include this domain and its associated IP to prevent future access attempts.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of get-smile.xyz · checked Mar 23, 2026
Доказательства и внешние отчеты
PD-20260322-D079A1 Recipient: abuse@publicdomainregistry.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание