airdrop-remittix[.]io
airdrop-remittix.io — 内容不可用. 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 4/93 (ADMINUSLabs, ChainPatrol, Fortinet, Kaspersky); PhishDestroy score 65/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of airdrop-remittix.io indicates that the domain is associated with a crypto drainer campaign. The domain was registered on February 21, 2026 and currently resolves to the IP address 188.114.96.3, which belongs to AS13335 Cloudflare, Inc. and is geolocated in the United States. The domain appears on a single security blocklist and has been explicitly blocked by PhishDestroy, confirming that it is recognized as malicious by at least one reputable threat‑intelligence source. The SSL certificate presented for the site is identified as WE1, but no further certificate details are available.
VirusTotal analysis shows that four of ninety‑three security vendors flag the domain as malicious, providing independent corroboration of its risky nature. Additionally, Gridinsoft assigns a trust score of 0 out of 100, indicating an extreme lack of trustworthiness. The current operational status of the domain is offline, which may limit immediate interaction but does not remove the underlying threat infrastructure. Uncertainties remain regarding the specific payload or luring techniques employed, as the page title and detailed content have not been publicly disclosed.
Defenders should treat the domain as hostile: add the domain and its resolving IP to blocklists, enforce DNS filtering, and monitor for any resurgence or related domains that leverage the same Cloudflare IP range. Continuous telemetry collection on the IP address and any associated subdomains is advised, as well as updating intrusion‑prevention signatures to reflect the observed detection patterns. Organizations should also educate users about unsolicited crypto‑related offers, particularly those referencing airdrops, to reduce the likelihood of successful social engineering attempts.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。