claimairdrop[.]pages[.]dev
“Claim your tokens now - One Point”
证据摘要
PhishDestroy identifies claimairdrop.pages.dev as an active brand-impersonation domain masquerading as an Airdrop Scam giveaway page. The site leverages a well-known cryptocurrency airdrop lure to trick visitors into connecting wallets and signing malicious transactions. No public evidence of a custom drainer kit has been uploaded yet, but the page’s JavaScript payload is known to request wallet connects and dangerous contract interactions typical of drainer scripts.
Technical indicators confirm this domain as a low-sophistication but live threat. VirusTotal shows only 1 out of 95 security vendors detected the page at time of analysis. The domain resolves to IP 172.66.44.214, is hosted behind Cloudflare (Inc.), and was issued an SSL certificate by Google Trust Services. Creation date is recent, and the domain is listed on exactly 1 public blocklist while being blocked by the Enkrypt browser extension. At present, Google Safe Browsing (GSB) has not assigned a verdict to the URL.
The current status of claimairdrop.pages.dev is active and propagating. Immediate response actions include network-wide blocking via DNS or browser extension lists and takedown requests to Cloudflare given the registrar. Although detection coverage is low and the campaign appears unsophisticated, the site remains capable of stealing funds from unsuspecting users. Remaining risk is elevated due to active hosting, HTTPS certificate, and the use of Cloudflare’s free tier to obfuscate origin.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
社区报告
由 1 名社区成员报告;首次发现于 2026年4月2日
- 已存储报告
- 1
- 已报告的唯一 URL
- 1
社区情报
1 条社区报告
类别PHISHING
@DrakardxAngel_bot
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of claimairdrop.pages.dev · checked Apr 2, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控