drop-finder-c6427a[.]vercel[.]app
“Check any wallet address for unclaimed airdrops! | DropFinder”
drop-finder-c6427a.vercel.app — 内容不可用. 品牌冒充:Across; 诈骗类型:Airdrop Scam. 证据摘要: VirusTotal 1/93 (Trustwave); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. 注册商: Tucows.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, drop-finder-c6427a.vercel.app, has been flagged with an elevated risk level as a brand impersonation threat specifically targeting users with an Airdrop Scam. The site posed as a legitimate airdrop checker, promising to reveal unclaimed tokens for any wallet address, but in reality was designed to steal credentials or cryptocurrency from unsuspecting victims. PhishDestroy identified this threat using seed 57d26e and confirmed the site is now offline, but similar scams may still be active.
Technical indicators for this domain are concerning. VirusTotal shows only 1 out of 95 security vendors flagged it, meaning many detection engines missed this threat. The domain was registered through Tucows Domains Inc. and created on February 21, 2026, which is unusually recent. It resolves to IP address 64.29.17.131 and uses an SSL certificate from Google Trust Services (WR1). Despite appearing on 3 security blocklists, the low detection rate underscores the need for vigilance. The page title was "Check any wallet address for unclaimed airdrops! | DropFinder," which is a classic lure for crypto enthusiasts.
Users who encounter similar sites should never connect their wallet or enter private keys. Always verify airdrop announcements through official project channels. Use PhishDestroy to check suspicious domains before interacting. Since this site is offline, the immediate risk is mitigated, but the same tactics may reappear under different domains. Enable two-factor authentication on all crypto accounts and consider using a hardware wallet for added security. Report any similar scams to relevant authorities and block the domain at the network level to prevent accidental access.
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%VirusTotal 分析
存档证据
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。