Güvenlik raporuna geç
Checked 09.08.2026 Ref 987D5C83

MALICIOUS — HIGH

bitbotclaim-2ip.pages.dev için kimlik avı ve güvenlik kontrolü

bitbotclaim-2ip[.]pages[.]dev

The domain bitbotclaim-2ip.pages.dev is currently active and involved in a fake airdrop scam.

69/100 evidence score · High
VirusTotal
3/91
Blocklists
No stored match
Kullanılabilirlik
Bilinen son aktif · HTTP 200
Report / Add Evidence Appeal this listing
2026-06-14 22:27 UTCBilinen son aktif · HTTP 200

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Bu alan adı, zararlı olarak işaretlenmiştir
Güvenlik motorları bir algılama bildiriyor: 3. Çok dikkatli olun — kimlik bilgilerini veya kişisel bilgileri girmeyin.
Jump to section
Rapor özeti

bitbotclaim-2ip.pages.dev — Bilinen son aktif (HTTP 200). Marka kimliğine bürünme: Telegram; Dolandırıcılık türü: Fake Airdrop. Kanıt özeti: VirusTotal 3/91 (alphaMountain.ai, Fortinet, Sophos); PhishDestroy score 69/100. Kayıt kuruluşu: Cloudflare Pages.

Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.

Evidence Analysis

Ref 987D5C83

The domain bitbotclaim-2ip.pages.dev is currently active and involved in a fake airdrop scam. Despite having zero detections on VirusTotal, this domain is already listed on one public blocklist, specifically PhishDestroy's. This early detection highlights the domain's freshness and the typical 24-72 hour window during which phishing domains operate before being flagged by antivirus databases.

Registered through Cloudflare Pages, bitbotclaim-2ip.pages.dev masquerades as Bitbot, claiming to be the world’s first Telegram self-custodial trading bot. Such scams often lure victims with promises of free cryptocurrency, leveraging the popularity of airdrops in the crypto community. The domain's SSL certificate is issued by Google Trust Services, and it is hosted on an IP address associated with CloudFlare, Inc., located in Canada.

Phishing domains like this exploit the gap between domain registration and antivirus database updates. PhishDestroy's proactive detection pipeline captures these threats in their nascent stages, providing crucial early warnings. The lack of VirusTotal detections should not be seen as an indication of safety but rather as evidence of the domain's recent creation and activity. As the domain continues to operate, it poses a risk to unsuspecting users who may be drawn in by the allure of a fake airdrop, underscoring the importance of early threat intelligence.

Stored source results

Recorded verdicts and infrastructure observations for this domain.

VirusTotal
VirusTotal
3 det.
TLS sertifikası
Süresi dolmuş veya doğrulanmamış -34d
Yaş
5 mo
Gözlemlenen durum
Bilinen son aktif 200
PhishDestroy
DestroyList
Listede
Veri kapsamı12 recorded checks
VirusTotal 3 / 91 URLQuery rapor saklandı — ayrıntılı karar bekleniyor PhishStats kontrol edilmedi OTX no community references CF Radarı no data URLScan capture not submitted URLScan verdict değerlendirme yok DNS engellemeleri kontrol edilmedi TLS Süresi dolmuş veya doğrulanmamış WHOIS 5 mo old Ekran görüntüsü 2 captures · 2 sources Yönlendirme zinciri araştırılmadı

Tehdit Müdahale Pipeline

Keşif
Checks
Reports
Kullanılabilirlik
7/9
Tehdit Alındı
bitbotclaim-2ip.pages.dev tespit edildi ve kapsamlı analiz için sıraya alındı
15.06.2026
VirusTotal
3/91 recorded on VirusTotal
26.07.2026
Google Safe Browsing
25.03.2026
Brand Impersonation
Impersonation of Telegram
Forensic Evidence Collected
Stored evidence from stored screenshot
Technical Analysis Recorded
Rapor, depolanan teknolojiyi veya adli analiz sonuçlarını içerir.
09.08.2026
Complaint Draft Available
Hiçbir gönderim kaydedilmez. Bir taslak oluşturabilir, inceleyebilir ve kendiniz uygun makama gönderebilirsiniz.
DestroyList Yayınlandı
15.06.2026
Monitoring Continues
Etki alanı erişilebilir durumda kalır veya erişimi kısıtlıdır; gelecekteki kontroller bu gözlemi güncelleyebilir.

Genel Engelleme Listesi Durumu

Kaydedilen görüntü

Etki Alanı Analizi

Alan adı
Sunucu / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden Edge-IP itibarı bu etki alanıyla ilişkilendirilmez.
Platform sağlayıcısı Cloudflare Pages
IP adresi 188.114.96.3 CDN
Coğrafi konumCA Toronto, CA
AS13335 · CloudFlare, Inc.
Kaynak IP, bir CDN proxy'sinin arkasına gizlenir. Uç adresine ilişkin Ters IP sonuçları ilgisiz kiracılar içerir; Kaynağı bulmak için pasif DNS veya sertifika şeffaflığı verileri gerekir.
HTTP Durumu200
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
İlk Kez Tespit Edildi15.06.2026
TLS Fingerprint
TLS Observationvalid from 07.04.2026scanned 11.04.2026
Sayfa başlığı
Bitbot - The World’s First Telegram Self-Custodial Trading Bot
TLS sertifikası
Süresi dolmuş veya doğrulanmamış · Düzenleyen Google Trust Services / WE1

Adli İstihbarat

External Scripts 3
https://static.hotjar.com/c/hotjar-4974135.js?sv=7 https://www.googletagmanager.com/gtm.js?id=GTM-TRZWKQG6 https://script.hotjar.com/modules.de6b9e294c29aa146ba1.js
Bu Alan Adını Bildir Kanıt sunun ve başkalarını korumaya yardımcı olun

VirusTotal Analizi

3 / 91 güvenlik sağlayıcıları bu alanı işaretledi
View on VT
Last analyzed First positive detection Previous stored snapshot: 0 detections
alphaMountain.ai
Fortinet
Sophos
Site Performans Analizi

Google PageSpeed Insights — mobile performance audit of bitbotclaim-2ip.pages.dev · checked Mar 28, 2026

48
Poor
Performance
FCP
8.03s
First Contentful Paint
LCP
27.15s
Largest Contentful Paint
CLS
0.001
Cumulative Layout Shift
TBT
380ms
Total Blocking Time
SI
8.03s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Kanıtlar ve Dış RaporlarIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.

Europol
AB ülkeniz için resmi raporlama kanalını bulun
National police directory
Kurtarma dolandırıcılarına dikkat edin! Suçlular, araştırmacı, avukat veya kurtarma görevlisi gibi davranarak mağdurlarla tekrar iletişime geçebilir. Peşin ücret ödemeyin veya kimlik bilgilerinizi paylaşmayın. Geri ödeme dolandırıcılığı hakkında daha fazla bilgi edinin →

Yerel Yetkililere Bildirin

resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.

97 ülke rehberi
Yapay zeka destekli taslak — olay ayrıntıları yapay zeka sağlayıcısı tarafından işlenir Kendiniz inceleyin ve gönderin
Bu Raporu YerleştirRead-only HTML widget
HTML · IFRAME

Bu Raporu Yerleştir

Bu tehdit bilgisini web sitenizde veya blogunuzda paylaşın

embed.html
<iframe
  src="https://phishdestroy.io/tr/embed/domain/bitbotclaim-2ip.pages.dev"
  title="PhishDestroy threat report for bitbotclaim-2ip.pages.dev"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>