get-smile[.]xyz
“SMILE — Airdrop Claim”
get-smile.xyz — Контент недоступний. Уособлення бренду: Genericcrypto; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 17/94 (Forcepoint ThreatSeeker, Kaspersky); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100. Реєстратор: PDR.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, get-smile.xyz, is confirmed as a high-risk brand impersonation site designed to execute an Airdrop Scam. Analysis indicates the domain mimics legitimate cryptocurrency airdrop campaigns, specifically targeting users of the SMILE token or similarly named projects. The page title, 'SMILE — Airdrop Claim,' reinforces the deception by presenting a fabricated opportunity to claim tokens, a common tactic in crypto-related fraud. No legitimate association with any verified blockchain project or token distribution has been established, and the domain lacks any credible authentication mechanisms such as SSL certification or verified ownership records. Infrastructure analysis reveals the following technical indicators: the domain was registered on March 23, 2026, through PDR Ltd. d/b/a PublicDomainRegistry.com, a registrar frequently exploited for malicious registrations. It resolves to the IP address 188.114.97.3, hosted by a provider known for anonymized services. VirusTotal detection metrics show 17 out of 95 security vendors flagging the domain as malicious, while it appears on three independent security blocklists. The domain is proxied behind CloudFlare, obscuring its true origin and complicating attribution. No SSL certificate is present, further reducing its legitimacy and increasing the risk of unencrypted data interception. As of the latest assessment, get-smile.xyz has been taken offline, likely due to enforcement actions by security providers or hosting interventions. However, the risk of re-emergence remains elevated given the domain's recent creation date and the persistent demand for cryptocurrency scams. Users who interacted with the site are advised to revoke any connected wallet permissions, monitor for unauthorized transactions, and verify token contracts through official project channels. Organizations should update blocklists to include this domain and its associated IP to prevent future access attempts.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of get-smile.xyz · checked Mar 23, 2026
Докази та зовнішні звіти
PD-20260322-D079A1 Recipient: abuse@publicdomainregistry.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога