tokensrev[.]xyz
“Hyperliquid l Airdrop”
tokensrev.xyz — Gizlenmiş · ulaşılabilir (HTTP 502). Marka kimliğine bürünme: OKX; Dolandırıcılık türü: Fake Airdrop. Kanıt özeti: VirusTotal 8/91 (alphaMountain.ai, CRDF, Emsisoft, Forcepoint ThreatSeeker, Fortinet); 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; cloaking observed; PhishDestroy score 100/100. Kayıt kuruluşu: OwnRegistrar.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
This domain, tokensrev.xyz, is actively engaged in brand impersonation targeting OKX, a major cryptocurrency exchange platform. The site presents itself under the guise of a 'Hyperliquid Airdrop,' a tactic commonly used to lure users into interacting with fraudulent interfaces designed to compromise crypto wallets or steal credentials. The specific threat posed involves crypto drainer mechanisms or credential harvesting, where victims may unknowingly authorize transactions or disclose sensitive information, leading to unauthorized access and asset theft. The use of airdrop-themed lures is a recurring strategy in crypto-related phishing campaigns, exploiting user interest in free token distributions to bypass skepticism. Analysis of the domain reveals multiple technical indicators supporting its malicious classification. tokensrev.xyz was registered on July 05, 2026, through OwnRegistrar, Inc., a registrar frequently associated with high-risk domains. The domain resolves to the IP address 188.114.97.3 and uses an SSL certificate issued by Google Trust Services, which, while providing encryption, does not validate the legitimacy of the site. VirusTotal detection metrics show that 5 out of 95 security vendors have flagged the domain as malicious, a modest but notable signal given the platform's conservative scoring thresholds. The page title, 'Hyperliquid l Airdrop,' further corroborates the impersonation theme, as it mimics legitimate airdrop announcements while omitting any affiliation with the actual OKX or Hyperliquid platforms. Users who have visited tokensrev.xyz or interacted with its content should take immediate remedial actions to mitigate potential risks. First, disconnect any connected wallets or sessions from the domain and revoke any suspicious token approvals using blockchain explorers or wallet management tools. Monitor accounts for unauthorized transactions and enable multi-factor authentication where available. If credentials were entered, reset passwords immediately and avoid reusing them across platforms. Report the domain to relevant blocklists or security communities to aid in broader threat mitigation. Given the elevated risk level and active status of this infrastructure, vigilance and proactive measures are critical to preventing financial loss or further compromise.
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknolojiler · 5 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org %100 güvenVue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.
vuejs.org %100 güvenCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com %100 güvenHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org %100 güvenVirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of tokensrev.xyz · checked Jul 6, 2026
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin