跳转到安全报告
⚠️
该域名已被标记为恶意域名
安全引擎报告检测:6。 请格外小心——不要输入凭据或个人信息。
域安全和威胁情报

airdrop-hyperliquid[.]fun

airdrop-hyperliquid.fun 网络钓鱼与安全检查

威胁判定 关键 73/100 证据评分
可用性 内容不可用 最新观察中的内容不可用
风险信号
病毒检测总数:6/95 诈骗类型:Crypto Scam
6/95 VT OTX: 1 ref 2025年10月25日 自 2026年4月23日 起不可用 Crypto Scam 180d to unavailable RU RU
报告概览

airdrop-hyperliquid.fun — 内容不可用 (HTTP 502). 诈骗类型:Crypto Scam. 证据摘要: VT 6/95 (alphaMountain.ai, CyRadar, Fortinet, Lionic, Seclookup); URLQuery 0; URLScan no malicious verdict; GSB no flag; BL 0; PD 73/100. 注册商: NiceNIC.

为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。

证据摘要
重要
Ref
34601AC8
评分
73/100

airdrop-hyperliquid.fun entered the PhishDestroy evidence set on Oct 25, 2025. The hostname uses “airdrop,” a pattern consistent with a airdrop lure; no target brand is confirmed from stored content. The stored content classification is crypto scam. The assembled evidence scores 73/100 (high).

One independent source is positive: VirusTotal. VirusTotal recorded 6 detections among 95 engines: alphaMountain.ai, CyRadar, Fortinet, Lionic, Seclookup, Sophos on May 17, 2026 at 12:36 UTC. The evidence is not unanimous. AlienVault OTX listed 1 community pulse reference (not vendor detections) on Mar 1, 2026 at 19:32 UTC. The external blocklist snapshot contained no matches on Aug 7, 2026 at 18:20 UTC. URLQuery recorded no positive detection. Google Safe Browsing returned no flag on Mar 3, 2026 at 04:14 UTC. URLScan completed without a malicious verdict (score 0) on Mar 3, 2026 at 01:25 UTC.

HTTP 502 was recorded on Aug 7, 2026 at 01:33 UTC; content was unavailable. Latest classified outcome: registration hold observed; cause registrar client hold; mechanism client hold; observed actor NICENIC INTERNATIONAL GROUP CO., LIMITED on Aug 7, 2026 at 01:45 UTC. Registration records for the domain list NiceNIC International Group Co., Limited as the registrar and Oct 23, 2025 as the creation date. Registration preceded first observation by 1 day. At collection time, the hostname resolved to 185.244.172.248 on AS204997 (FIRSTBYTE-AS FIRST SERVER LIMITED, GB). The associated network metadata labels the endpoint as AS204997 FIRST SERVER LIMITED in Moscow, RU. The stored server header is nginx/1.24.0 (Ubuntu). DOM analysis completed on Apr 23, 2026 at 23:20 UTC; stored DOM score 0/100. The evidence archive retains 2 visual captures from PhishDestroy and URLScan. IoC extraction completed on Aug 2, 2026 at 04:31 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators.

No page title was retained; the visual captures, not a title string, preserve the landing-page appearance. No target brand has been confirmed from stored page content; hostname wording alone is not treated as brand evidence. The 0/100 DOM score means that the DOM pass stored no scored indicators; it does not negate the independent source findings.

VirusTotal
VirusTotal
6 det.
OTX references
URLScan
URLScan
Gridinsoft
0/100
年龄
10 mo
观测状态
内容不可用 502
PhishDestroy
DestroyList
已列入
数据覆盖范围 VirusTotal 6 / 95 URLQuery 报告已存储 — 详细判决待定 PhishStats 未检查 OTX 1 community reference CF雷达 scan completed URLScan capture 存储的报告 URLScan verdict 分析完成 DNS 阻断 未检查 TLS 无证书数据 WHOIS 10 mo old 屏幕截图 2 captures · 2 sources 重定向链 未探查 Gridinsoft 0/100
网络安全情报 Registrar Integrity Alert
High-Risk Registrar NiceNIC
PhishDestroy audit found that over 90% of domains registered through NiceNIC are associated with illegal content. This registrar systematically ignores abuse reports and its primary clientele consists of CIS-region scam operators. We have not identified a single legitimate project hosted on this registrar.
NiceNIC Verdict Full Investigation

威胁响应 Pipeline

发现
Checks
Reports
可用性
14/15

公共封禁名单状态

已保存的截图

域名情报

域名
URLScan Verdict 分析完成 score 0 report ↗
服务器 / ASN nginx/1.24.0 (Ubuntu) · AS204997 FIRSTBYTE-AS FIRST SERVER LIMITED, GB
IP 信誉 abuse score 0/100 0 reports checked 2026年6月18日
IP 地址 185.244.172.248 RU
地理位置RU Moscow, RU
网络AS204997 · FIRST SERVER LIMITED
注册信息创建 2025年10月23日 (287d) Expires 2026年10月23日
HTTP 状态码502 Error
首次不可用所需时间 180 days
统计口径 从第一个存储的滥用报告到第一次观察到内容不可用所经过的时间。这并不能确定原因。
每份报告包含哪些内容 存储的传出报告记录可以参考当时可用的证据,例如供应商判决、注册数据、托管详细信息、分类或屏幕截图。此页面无法推断收件人交付、接收、确认或操作的确切有效负载。
技术细节DNS、SSL SAN、时间戳
首次发现2025年10月25日
DOM Analysisanalyzed 2026年4月24日score 0/100
IoC Extractionscanned 2026年8月2日0 wallet · 0 Telegram IoCs
Submitted URLhttp://airdrop-hyperliquid.fun/
域名服务器a.dnspod.comb.dnspod.comc.dnspod.com
TLS Observationscanned 2026年5月17日
ICANN OVERSIGHT

认证和 RAA 背景

ICANN 收到了钱。问责却没有到来。

对于这个 gTLD,上述注册商依据与 ICANN 签订的合同运营。ICANN 收取与注册、续费和转移相关的年度费用、浮动费用及按交易计收的费用。

认证:已变现。问责:请稍后再来查看。

接着,魔法开始了:ICANN 写下 RAA §3.18,注册商调查自身客户群体内部的滥用行为,受害者免费提交证据,而每一层都在等待其他人采取行动。如果这能让受害者觉得更安全,那真是太好了——看来账单确实起作用了。

关于问责的讽刺说明 不会自动发送任何内容。

Latest Classified Outcome 2026-08-07 03:45:37 UTC

Primary outcome Registration hold observed reason: Registrar clientHold 95% confidence
Attribution NICENIC INTERNATIONAL GROUP CO., LIMITED mechanism: Registrar clientHold source: Rdap Status Collector
Evidence layers Availability: DNS inactive Content: Unreachable DNS: NXDOMAIN Registration: Registrar and registry holds
Latest HTTP observation 未知 Origin unreachable Http 5xx 20% 2026-08-07 01:33:02 UTC
RDAP registration Registrar and registry holds NICENIC INTERNATIONAL GROUP CO., LIMITED · IANA 3765 RDAP HTTP 200 source: Rdap Status Collector clientDeleteProhibitedclientHoldclientTransferProhibitedserverHold expires 2026-10-23 23:59:59 UTC checked 2026-08-07 03:45:37 UTC
Registrar action marker verified clientHold marker NICENIC INTERNATIONAL GROUP CO., LIMITED · IANA 3765 causal link to our report not established
Observed timeline last reachable: 2026-05-18 05:15:09 UTC current episode first observed: 2026-08-05 01:45:38 UTC observed RIP window: 2026-05-18 05:15:09 UTC → 2026-08-05 01:45:38 UTC · 1,892.51h midpoint estimate ≈ 2026-06-26 15:30:23 UTC · precision very low · basis bounded
Availability, content, DNS and registration are independent evidence layers. NXDOMAIN, an unreachable origin or missing content alone does not prove registrar action. A registrar or provider is credited only when a direct technical marker identifies that actor. Report causality is shown separately.
举报此域名 提交证据,帮助保护他人

VirusTotal 分析

6 / 95 安全供应商标记了该域
View on VT
alphaMountain.ai
CyRadar
Fortinet
Lionic
Seclookup
Sophos

证据与外部报告

您是否受到本网站的影响?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。

欧洲刑警组织
查找您所在欧盟国家/地区的官方报告渠道
National police directory
警惕“数据恢复”诈骗! 犯罪分子可能会冒充调查员、律师或追债员再次联系受害者。 请勿支付预付费用或共享凭证。 了解有关康复欺诈的更多信息 →

向当地主管部门报告

选择您所在的国家/地区以获取 官方网络犯罪联系人创建投诉草稿 →

97个国家目录
AI辅助草稿——事件详细信息由AI提供商处理 自行审核并提交

检查任意域名

使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析

立即扫描

举报网络钓鱼

将可疑域名提交至我们的威胁数据库——保护社区

报告

实时威胁动态

最近的网络钓鱼报告和观察到的可用性变化

监控

随时掌握最新信息,确保安全

请实时监控威胁,或者如果您认为这是误报,请对该条目提出异议

实时威胁动态 对该列表提出异议
HTML · IFRAME

嵌入此报告

在您的网站或博客上分享此威胁情报

embed.html
<iframe
  src="https://phishdestroy.io/zh/embed/domain/airdrop-hyperliquid.fun"
  title="PhishDestroy threat report for airdrop-hyperliquid.fun"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

一封无比真诚的感谢信

讽刺信件草稿生成器

收件方
费用背景

这是讽刺性草稿。费用数字均为估算;我们并不声称这些费用可被准确归因于此域名。