airdrop[.]moonbirbs[.]network
Зведення доказів
The domain airdrop.moonbirbs.network is confirmed as infrastructure supporting an airdrop scam, a specific threat type involving fraudulent cryptocurrency token distributions. Currently offline, this domain previously impersonated legitimate airdrop campaigns to deceive users into disclosing wallet credentials or transferring funds. Analysis indicates this was an active component of a broader deception operation targeting crypto asset holders. Infrastructure analysis reveals the domain was flagged by 9 of 95 security vendors on VirusTotal, indicating high confidence in its malicious classification. Registered on February 21, 2026, the domain resolved to IP address 188.114.96.3, hosted on Cloudflare infrastructure (AS13335) in the United States. No SSL certificate was present, a common red flag for fraudulent sites. The domain appeared on three security blocklists, including entries from major threat intelligence platforms, further corroborating its malicious intent. Creation metadata and hosting patterns align with known airdrop scam campaigns observed in early 2026. Current status shows the domain as taken offline, though residual risks remain for users who may have interacted with it prior to deactivation. Organizations and individuals are advised to block the domain and associated IP at network perimeters. Security teams should review logs for connections to 188.114.96.3 or the domain name, particularly from crypto-related services. Users who engaged with this domain should assume credential exposure and revoke any wallet authorizations or transactions initiated during the interaction window. Proactive monitoring for similar domains using the 'moonbirbs' naming pattern is recommended to prevent follow-on attacks.
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 12.08.2026
Хронологія виявлення
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога