azuro-app-airdrop[.]pages[.]dev
“$AZUR Airdrop - Azuro App”
azuro-app-airdrop.pages.dev — 未验证. 诈骗类型:Fake Airdrop. 证据摘要: VirusTotal 2/91 (alphaMountain.ai, Gridinsoft); 2 external blocklist matches (ScamSniffer, Enkrypt); PhishDestroy score 83/100. 注册商: Cloudflare.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Domain azuro-app-airdrop.pages.dev is currently active and engaged in a brand impersonation scam targeting Airdrop Scam. This campaign leverages deceptive tactics to deceive users into divulging sensitive information or transferring cryptocurrency. The threat actor behind this operation has registered the domain through Cloudflare, Inc., and utilizes Cloudflare's infrastructure to host malicious content. The campaign's current status remains active, with ongoing efforts to propagate the fraudulent domain across unsuspecting users. This domain resolves to IP address 172.66.47.65 and has been flagged by 1 of 95 VirusTotal security vendors, indicating a low but notable detection rate. The domain is registered through Cloudflare, Inc., leveraging the company’s reputation to evade initial scrutiny. It has appeared on 2 distinct security blocklists, further validating its malicious nature. Despite its malicious intent, the domain holds valid SSL certification via Google Trust Services, employing a facade of legitimacy to gain user trust. Its recent registration and low detection rate suggest an evolving threat actively seeking to compromise unsuspecting users. Given its active status and deployment on Cloudflare infrastructure, this domain poses an elevated risk to users engaging with it. Immediate action is recommended to block azuro-app-airdrop.pages.dev at the network perimeter and endpoint levels. Organizations should update their threat intelligence feeds and firewall rules to prevent access to this domain. Additionally, users should be warned against interacting with unsolicited airdrop-related communications and verify the authenticity of any airdrop campaigns through official channels. Security teams are advised to monitor for related infrastructure or domains that may emerge as this campaign continues to evolve.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
证据与外部报告
“angel drainer”
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。