commonbirdxrpl[.]info
“Common Bird ($CBIRD) — XRPL Airdrop”
commonbirdxrpl.info — Помилка сервера (HTTP 502). Уособлення бренду: Ledger; Тип шахрайства: Fake Airdrop. Зведення доказів: VirusTotal 15/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); Google Safe Browsing flagged; Spamhaus DBL_PHISH; 1 external blocklist match (ScamSniffer); PhishDestroy score 95/100. Реєстратор: NiceNIC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain commonbirdxrpl.info is identified as a high-risk brand impersonation threat, specifically targeting individuals with an airdrop scam. This domain masqueraded as a legitimate source for the 'Common Bird ($CBIRD) — XRPL Airdrop', intending to deceive users into compromising their personal information or financial assets. The presence of advanced web technologies such as HSTS and Cloudflare indicates an effort to appear legitimate and secure, further misleading unsuspecting users.
Evidence supporting this threat is significant. The domain was created on March 25, 2026, and it has been flagged by 15 out of 95 security vendors on VirusTotal, illustrating a widespread recognition of its malicious nature. It has been included in at least three security blocklists, including PhishDestroy, ScamSniffer, and InversionDNS. The domain registrar, NICENIC INTERNATIONAL GROUP CO., LIMITED, is noted for registering this fraudulent entity, which has been marked by Google Safe Browsing for 'SOCIAL_ENGINEERING'. With a Gridinsoft trust score of 0/100, this domain's lack of credibility and trustworthiness is evident.
Users who may have visited commonbirdxrpl.info should take immediate precautionary measures. They should scan their systems for malware and change passwords for any accounts that could have been compromised. Additionally, monitoring financial accounts for unauthorized transactions is advisable. Users are also encouraged to educate themselves about phishing techniques and be wary of unsolicited offers, especially those promising financial gains through airdrops or similar schemes. Engaging with reliable cybersecurity resources can help mitigate such threats and protect personal information in the future.
Розвіддані з мережевої безпеки Registrar context
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-13 02:56:14 UTC
Технології · 4 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Аналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
PD-20260325-C3FFB8 Recipient: abuse@nicenic.net, abuse@identitydigital.com, compliance@icann.org Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога