ramadanairdrop[.]pages[.]dev
Проверка домена ramadanairdrop.pages.dev на фишинг и безопасность
“Join the Ramadan Revenue Share Airdrop and Get your tokens!”
ramadanairdrop.pages.dev — Последний известный активный (HTTP 200). Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 1/91 (alphaMountain.ai); PhishDestroy score 76/100. Регистратор: Cloudflare.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, ramadanairdrop.pages.dev, is flagged as an active brand impersonation threat targeting cryptocurrency users through a fraudulent airdrop scheme. Analysis indicates the site is designed to mimic legitimate token distribution events, specifically exploiting the Ramadan Revenue Share Airdrop branding to deceive victims into disclosing wallet credentials or transferring funds. The domain currently displays the page title 'Join the Ramadan Revenue Share Airdrop and Get your tokens!' and remains operational as of the latest verification. Infrastructure analysis reveals the domain was registered on February 21, 2026, through Cloudflare, Inc., and resolves to the IP address 172.66.47.39. The SSL certificate is issued by Google Trust Services (WE1), a common characteristic of both legitimate and malicious sites leveraging Cloudflare’s hosting services. Security telemetry shows the domain is flagged by 1 of 95 vendors on VirusTotal, with a presence on 1 security blocklist. These indicators, while limited, align with known patterns of low-effort scam infrastructure designed to evade detection during initial deployment. The domain remains active and poses a high risk to users encountering it through social media, forums, or malvertising campaigns. Recommendations include blocking the domain at the network level, adding it to endpoint protection denylists, and alerting users to the specific threat of fake airdrop schemes. Organizations should monitor for related domains using similar naming conventions (e.g., 'ramadan', 'revenue', 'airdrop') and IP associations with 172.66.47.39. Users are advised to verify airdrop legitimacy through official project channels before interacting with any token distribution links.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 5 identified
Free public CDN for open-source projects, serving files from npm and GitHub.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of ramadanairdrop.pages.dev · checked Mar 7, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание