airtimesure[.]com
“AirtimeSure - Home”
Зведення доказів
The domain airtimesure.com is a phishing site engaged in brand impersonation targeting Mastercard users. It presented itself as a legitimate service under the name 'AirtimeSure' but was designed to harvest login credentials and financial information through deceptive pages. No crypto drainer kit was identified. The site is currently taken offline, though its recent activity classifies it as an elevated risk for brand impersonation and credential theft.
Technical indicators confirm airtimesure.com as malicious. As of analysis, 2 of 95 VirusTotal security vendors flagged the domain, including alphaMountain.ai and Fortinet, while Google Safe Browsing did not detect it. The domain was registered on July 08, 2025, through Atak Domain and resolved to IP address 198.23.141.202, hosted on AS36352 (HostPapa) in the US. It appeared on one security blocklist (PhishDestroy) and used an SSL certificate issued by Let's Encrypt (R12). The observed page title was 'AirtimeSure - Home', and the site returned an HTTP 200 status. Nameservers were ns1.billionvaan.com and ns2.billionvaan.com, and Gridinsoft assigned a trust score of 0/100.
Victims of airtimesure.com should immediately change any passwords entered on the site, particularly for Mastercard or linked financial accounts. Enable two-factor authentication (2FA) on all critical services to prevent unauthorized access. Monitor bank and credit card statements for unauthorized transactions, and report fraudulent activity to the impersonated brand (Mastercard) and local cybercrime authorities. The domain can be reported to Google Safe Browsing, PhishTank, or the registrar (Atak Domain) for further action.
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 12.08.2026
Хронологія виявлення
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога