claim-sniffer[.]pages[.]dev
“Token_Symbol | Airdrop”
证据摘要
PhishDestroy identifies claim-sniffer.pages.dev as an active airdrop impersonation domain designed to deceive cryptocurrency users into surrendering sensitive wallet credentials or transferring digital assets under false pretenses. This site masquerades as a legitimate token airdrop platform with a page title 'Token_Symbol | Airdrop,' exploiting trust in established blockchain ecosystems to lure victims. The domain leverages Cloudflare’s infrastructure and a Let’s Encrypt SSL certificate to appear legitimate, while hosting content that closely mimics official airdrop campaigns from well-known projects. As of the latest analysis, this threat remains operational and continues to evolve its tactics to bypass detection. This domain was flagged by PhishDestroy using seed 28ed70, revealing key technical indicators that confirm its malicious intent. The site resolves to IP address 172.66.44.89 and shows zero detections on VirusTotal (0/95 scanners), indicating a low current detection rate despite clear signs of brand impersonation. It is registered through Cloudflare, Inc., which provides anonymity and operational resilience to threat actors. While the exact creation date is not publicly disclosed, the domain remains active and unlisted on major blocklists, allowing it to persist in the threat landscape with minimal interference. Users who have visited claim-sniffer.pages.dev or interacted with its content should immediately assess their exposure and take precautionary steps. If any cryptocurrency wallet credentials, private keys, or seed phrases were entered on this site, those wallets should be considered compromised, and funds should be moved to a new, secure wallet immediately. Enable two-factor authentication on all related accounts and monitor transaction history for unauthorized activity. Report the domain to your cybersecurity provider or relevant authorities such as the FBI’s IC3 or local cybercrime units. Avoid reusing passwords or wallet recovery phrases across platforms, and consider using hardware wallets for enhanced security. Stay vigilant against similar airdrop scams by verifying official project websites and communication channels before engaging with any crypto-related offers.
Data Coverage
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | aodefevrgdkhqltdnwgzbyjoywrlbntbhfwq.com |
malicious | Sinkholed |
| DNS4EU | aodefevrgdkhqltdnwgzbyjoywrlbntbhfwq.com |
malicious | Sinkholed |
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
检测时间线
-
域名状态
可访问 → 无法访问
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of claim-sniffer.pages.dev · checked Apr 15, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控