apemars-claim-presale-launch-oees33-aert0ds[.]pages[.]dev
“APEMARS Presale Claim – Official $APRZ Claim Page”
apemars-claim-presale-launch-oees33-aert0ds.pages.dev — 未验证. 诈骗类型:Crypto Drainer. 证据摘要: VirusTotal 4/91 (alphaMountain.ai, Forcepoint ThreatSeeker, Google Safe Browsing, Gridinsoft); 1 external blocklist match (ScamSniffer); PhishDestroy score 76/100. 注册商: Cloudflare Pages.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain apemars-claim-presale-launch-oees33-aert0ds.pages.dev is actively distributing a crypto drainer targeting users of the $APRZ token presale. Analysis confirms this infrastructure impersonates the official APEMARS presale claim page, tricking victims into connecting cryptocurrency wallets to malicious smart contracts designed to siphon funds. The page title, APEMARS Presale Claim – Official $APRZ Claim Page, explicitly mimics legitimate promotional materials, increasing the likelihood of successful social engineering attacks against presale participants. Infrastructure analysis reveals the domain was registered through Cloudflare Pages on June 06, 2026, and currently resolves to the IP address 188.114.97.3, hosted on AS13335 (Cloudflare, Inc.) in the United States. Detection metrics indicate limited but growing awareness, with 3 of 95 security vendors on VirusTotal flagging the domain as malicious. The SSL certificate, issued by Google Trust Services (WE1), provides no inherent trust validation beyond standard encryption. The domain appears on 2 security blocklists and is actively blocked by at least two specialized threat intelligence platforms, including PhishDestroy and ScamSniffer. Current status confirms the domain remains operational, posing a high risk to users engaging with $APRZ presale promotions. Recommendations include immediate blacklisting of the domain and IP across all organizational security controls. Users should verify presale claims exclusively through official project channels, enable transaction simulation tools to preview smart contract interactions, and deploy wallet protection mechanisms such as hardware wallets or isolated software environments. Network defenders are advised to monitor for connections to 188.114.97.3 and implement real-time blocking of newly observed domains registered under Cloudflare Pages exhibiting similar naming patterns or impersonating cryptocurrency presales.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 4 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 置信度 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 置信度 100%VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of apemars-claim-presale-launch-oees33-aert0ds.pages.dev · checked Jun 14, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。