drop-finder-c6627b[.]vercel[.]app
“Check any wallet address for unclaimed airdrops! | DropFinder”
drop-finder-c6627b.vercel.app — İçerik kullanılamıyor. Marka kimliğine bürünme: Across; Dolandırıcılık türü: Airdrop Scam. Kanıt özeti: VirusTotal 5/93 (alphaMountain.ai, CyRadar, G-Data, Kaspersky, Sophos); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Kayıt kuruluşu: Tucows.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
This report analyzes the domain drop-finder-c6627b.vercel.app, which presented itself as a cryptocurrency airdrop checker under the title "Check any wallet address for unclaimed airdrops! | DropFinder." The site impersonated a legitimate airdrop scanning service and posed a threat by likely attempting to deceive users into connecting cryptocurrency wallets, thereby enabling theft of funds or private keys. As an airdrop scam in the cryptocurrency sector, its primary risk was financial loss through unauthorized access to user wallets.
Technical evidence shows the domain was flagged by 5 out of 95 VirusTotal vendors, including alphaMountain.ai, CyRadar, G-Data, Kaspersky, and Sophos, and appeared on 3 blocklists. It was registered through Tucows Domains Inc. on 2026-02-21, hosted on IP address 64.29.17.131 (United States) under AS16509 Amazon.com, Inc., and used an SSL certificate issued by Google Trust Services (WR1). No additional technical indicators such as hosting provider changes were observed beyond the provided data.
The site is currently offline and inactive, as indicated by its DOWN/OFFLINE status. Given the impersonation of a cryptocurrency airdrop service, low but present detection rate, and association with known threat actors, the risk level is assessed as moderate. Users should avoid interacting with similar domains and verify airdrop services through official channels.
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 2 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org %100 güvenVirusTotal Analizi
Arşivlenmiş Kanıtlar
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin