跳转到安全报告
⚠️
该域名已被标记为恶意域名
安全引擎报告检测:7。 报告匹配的公共黑名单:1。 请格外小心——不要输入凭据或个人信息。
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . The recorded recipient is abuse@radix.email. The latest stored availability evidence still shows the domain reachable; 7 days has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
7 days
Reports sent
1
Latest case ID
PD-20260809-A4905E
Current status
Observed active at latest stored check
域安全和威胁情报

contra[.]tokens-drop[.]fun

“Contrapair | Airdrop”

威胁判定 关键 71/100 证据评分
可用性 未验证 当前可达性未经验证
病毒检测总数:7/91 Spamhaus DBL: DBL_PHISH 存储的阻止列表匹配项:1 品牌冒充:Airdrop Scam 年轻域名:15 天龄
2026年8月9日 空投诈骗 1 Report Sent CDN
报告概览

contra.tokens-drop.fun — 未验证. 品牌冒充:Airdrop Scam; 诈骗类型:Fake Airdrop. 证据摘要: VirusTotal 7/91 (Forcepoint ThreatSeeker, Fortinet, G-Data, Gridinsoft, LevelBlue); Spamhaus DBL_PHISH; 1 external blocklist match (ScamSniffer); PhishDestroy score 71/100. 注册商: NiceNIC.

为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。

证据摘要
重要
Ref
FD3B7A83
评分
71/100

contra.tokens-drop.fun is a subdomain of tokens-drop.fun. PhishDestroy first observed the hostname on Aug 9, 2026. Stored content metadata identifies Airdrop Scam as the apparent target. The captured page title is “Contrapair | Airdrop”. Stored page analysis classifies the content as fake airdrop. Current evidence score: 71/100 (critical).

Positive findings are stored from 3 sources: VirusTotal, ScamSniffer, and Spamhaus DBL. VirusTotal recorded 7 detections among 91 engines: Forcepoint ThreatSeeker, Fortinet, G-Data, Gridinsoft, LevelBlue, SOCRadar, Sophos on Aug 16, 2026 at 13:32 UTC. ScamSniffer listed the hostname in the separate external-blocklist snapshot on Aug 16, 2026 at 14:20 UTC. Spamhaus DBL: DBL_PHISH on Aug 9, 2026 at 10:30 UTC. Non-positive and contextual checks: URLQuery recorded no positive detection on Aug 9, 2026 at 10:10 UTC. Google Safe Browsing returned no flag on Aug 16, 2026 at 13:06 UTC. URLScan completed without a malicious verdict (score 0) on Aug 9, 2026 at 10:48 UTC.

The collector marked the hostname reachable on Aug 16, 2026 at 02:40 UTC, but did not retain the HTTP response code. Latest classified outcome: live content observed; cause content served on Aug 16, 2026 at 00:40 UTC. Registration records for the registrable domain tokens-drop.fun list NICENIC INTERNATIONAL GROUP CO., LIMITED as the registrar and Jul 31, 2026 as the creation date. Registration preceded first observation by 8 days. At collection time, the hostname resolved to 188.114.97.3 on AS13335 (Cloudflare, Inc.). The IP and ASN identify shared Cloudflare edge infrastructure; the origin server is not established by this address. The evidence archive retains 4 visual captures from PhishDestroy, URLScan, URLQuery, and Cloudflare Radar. IoC extraction on Aug 9, 2026 at 10:50 UTC retained 0 format-validated wallet addresses and 1 Telegram indicator. TLS metadata lists Google Trust Services as the certificate issuer.

The content indicators and 3 positive source findings support the current Airdrop Scam-themed fake airdrop classification.

VirusTotal
VirusTotal
7 det.
URLScan
URLScan
ScamAdviser
Scamadviser
80/100
TLS 证书
Google Trust Services
年龄
15d Very New!
观测状态
未验证
PhishDestroy
DestroyList
已列入
Reports Sent
1
数据覆盖范围 VirusTotal 7 / 91 URLQuery checked — no detections recorded PhishStats 未检查 OTX no community references CF雷达 scan completed URLScan capture 存储的报告 URLScan verdict 分析完成 DNS 阻断 未检查 TLS valid certificate, 74d WHOIS 15d old 屏幕截图 4 captures · 4 sources 重定向链 未探查 Scamadviser 80/100
网络安全情报 Registrar context
Registrar context NiceNIC
Stored registration data identifies NICENIC INTERNATIONAL GROUP CO., LIMITED (IANA 3765) as the registrar. PhishDestroy maintains separate NiceNIC abuse-report research; registrar association is contextual and is not an independent detection for this domain.
NiceNIC Verdict Full Investigation

威胁响应 Pipeline

发现
Checks
Reports
可用性
16/17
Sent Report Recorded
Stored sent-report record for registrar NICENIC INTERNATIONAL GROUP CO., LIMITED, hosting provider, 1 abuse contact
abuse@nicenic.net
2026年8月9日

公共封禁名单状态

已保存的截图

页面标题
Contrapair | Airdrop
TLS 证书
Valid transport encryption · 颁发者 Google Trust Services · valid for 74 days

域名情报

域名
URLScan Verdict 分析完成 score 0 report ↗
Telegram IoCs 1 extracted https://t.me/blackbullsolana
服务器 / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden Edge-IP 声誉不属于此域。
Registrar (base domain) NiceNIC RU(RU) PhishDestroy Investigation
滥用举报联系方式abuse@nicenic.net
ICANN 注册管理机构ICANN官方认证注册商 →
IP 地址 188.114.97.3 CDN
地理位置CA Toronto, CA
网络AS13335 · CloudFlare, Inc.
源 IP 隐藏在 CDN 代理后面。边缘地址的反向 IP 结果包含不相关的租户;查找源头需要被动 DNS 或证书透明数据。
Registration (base domain)tokens-drop.fun · 创建 2026年7月31日 (15d · Very New!) Expires 2027年7月31日
技术细节DNS、SSL SAN、时间戳
首次发现2026年8月9日
IoC Extractionscanned 2026年8月9日0 wallet · 1 Telegram IoC
Submitted URLhttp://contra.tokens-drop.fun/
域名服务器emily.ns.cloudflare.comnolan.ns.cloudflare.com
Favicon Hash
Case ID
ICANN OVERSIGHT Registration: tokens-drop.fun

认证和 RAA 背景

Registrar accreditation and DNS abuse obligations

For the registrable domain tokens-drop.fun behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft 不会自动发送任何内容。

Latest Classified Outcome 2026-08-16 02:40:05 UTC

Primary outcome Live content reason: Ordinary HTTP content served 90% confidence
Attribution source: Current Http Probe
Evidence layers Availability: Content serving Content: Content served at root DNS: Resolved Registration: Active
Latest HTTP observation Live content Ordinary HTTP content served 90% 2026-08-16 02:40:05 UTC
RDAP registration 有效 NICENIC INTERNATIONAL GROUP CO., LIMITED · IANA 3765 RDAP HTTP 200 source: Rdap Status Collector clientDeleteProhibitedclientTransferProhibited expires 2027-07-31 20:15:07 UTC checked 2026-08-13 03:52:09 UTC
Observed timeline last reachable: 2026-08-16 02:40:05 UTC last content: 2026-08-16 02:40:05 UTC
Availability, content, DNS and registration are independent evidence layers. NXDOMAIN, an unreachable origin or missing content alone does not prove registrar action. A registrar or provider is credited only when a direct technical marker identifies that actor. Report causality is shown separately.
所用技术 · 2 identified
Cloudflare
CDN

Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.

www.cloudflare.com 置信度 100%
HTTP/3
Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

httpwg.org 置信度 100%
Detected via Cloudflare Radar · Wappalyzer engine
举报此域名 提交证据,帮助保护他人

VirusTotal 分析

7 / 91 安全供应商标记了该域
View on VT
Last analyzed First positive detection Previous stored snapshot: 7 detections
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
LevelBlue
SOCRadar
Sophos

存档证据

Wayback Machine Snapshot
历史快照可供证据审查
View Archive
网站性能分析

Google PageSpeed Insights — mobile performance audit of contra.tokens-drop.fun · checked Aug 9, 2026

65
Needs Work
Performance
FCP
3.03s
First Contentful Paint
LCP
3.11s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
835ms
Total Blocking Time
SI
4.8s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
网站配置分析
Stored observations are retained with their original collection time.
robots.txt Present · HTTP 200
Valid robots.txt; no Disallow/Allow paths were extracted.

证据与外部报告

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260809-A4905E Recipient: abuse@radix.email
Page title stored with report: Contrapair | Airdrop
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 134.2 KB

您是否受到本网站的影响?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。

欧洲刑警组织
查找您所在欧盟国家/地区的官方报告渠道
National police directory
警惕“数据恢复”诈骗! 犯罪分子可能会冒充调查员、律师或追债员再次联系受害者。 请勿支付预付费用或共享凭证。 了解有关康复欺诈的更多信息 →

向当地主管部门报告

选择您所在的国家/地区以获取 官方网络犯罪联系人创建投诉草稿 →

97个国家目录
AI辅助草稿——事件详细信息由AI提供商处理 自行审核并提交

检查任意域名

使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析

立即扫描

举报网络钓鱼

将可疑域名提交至我们的威胁数据库——保护社区

报告

实时威胁动态

最近的网络钓鱼报告和观察到的可用性变化

监控

随时掌握最新信息,确保安全

请实时监控威胁,或者如果您认为这是误报,请对该条目提出异议

实时威胁动态 对该列表提出异议
HTML · IFRAME

嵌入此报告

在您的网站或博客上分享此威胁情报

embed.html
<iframe
  src="https://phishdestroy.io/zh/embed/domain/contra.tokens-drop.fun"
  title="PhishDestroy threat report for contra.tokens-drop.fun"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

一封无比真诚的感谢信

讽刺信件草稿生成器

收件方
费用背景

这是讽刺性草稿。费用数字均为估算;我们并不声称这些费用可被准确归因于此域名。