airdrop[.]xeleb[.]us
Kaydedilmiş tespit
Gizleme uyarısı
- Gizleme türü
status_split- Gizleme puanı
- 4/6
Kanıt özeti
This domain, airdrop.xeleb.us, was registered on 11 August 2025 through PDR Ltd. d/b/a PublicDomainRegistry.com and is currently hosted behind Cloudflare (ASN13335). The authoritative name servers are earl.ns.cloudflare.com and melody.ns.cloudflare.com, and the domain resolves to the IP address 188.114.97.3, which is associated with the Cloudflare network in the United States. TLS termination is provided by a Google Trust Services certificate (WE1), and the service supports HTTP/3. An HTTP request returns a 403 status code, indicating that the web server is actively denying direct access, a behavior commonly observed in malicious drop‑sites that serve content only to specific user agents or after additional JavaScript processing. The domain is classified as a cryptocurrency drainer and appears on a single security blocklist; it is also listed as blocked by PhishDestroy. VirusTotal analysis shows that one of ninety‑five scanning engines flagged the domain, corroborating the presence of malicious activity. The combination of recent registration, use of a reputable CDN, a valid TLS certificate, and the 403 response suggests an attempt to gain credibility while limiting exposure to automated crawlers. Defenders should treat airdrop.xeleb.us as a high‑risk, active threat. Recommended actions include adding the domain to outbound filtering rules, enforcing DNS sink‑hole or blocklist entries, and monitoring for any anomalous traffic to the associated IP address. Continuous re‑evaluation of the domain’s status on threat intelligence feeds is advised, as the underlying payload or phishing page may become visible after the 403 barrier is bypassed.
Data Coverage
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 13.08.2026
Tespit zaman çizelgesi
-
Alan adı durumu
Erişilebilir → Erişilemiyor
-
Alan adı durumu
Erişilebilir → Erişilemiyor
-
Alan adı durumu
Erişilebilir → Erişilemiyor
-
Cloudflare Radar
Cloudflare Radar taraması kaydedildi · Taramayı aç
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
Teknolojiler
2 yüksek güvenli teknoloji belirlendi
VirusTotal Analizi
Arşivlenmiş Kanıtlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin