nibirufi-5mq.pages.dev
Category: Cryptocurrency
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCRisk.com may earn a referral commission when users sign up through this link.
Description of nibirufi-5mq.pages.dev
This website appears to be a promotional landing page for Nibiru Chain, a Web3 and blockchain-related project. The page title and visible content indicate that it focuses on airdrop campaigns, with sections for past airdrops and wallet-based participation. The design, branding, and outbound links suggest it is presenting itself as part of the broader Nibiru ecosystem rather than as a standalone unrelated site.
Based on the page metadata and linked destinations, the site may be intended to direct visitors toward community channels, documentation, blog posts, and application pages associated with Nibiru. It is hosted on a pages.dev subdomain, which commonly indicates deployment through a static hosting platform rather than a primary branded domain. That setup can be legitimate for campaign microsites, previews, or auxiliary project pages, but it also means visitors should pay attention to whether the subdomain is officially referenced by the main project.
Safety Assessment for nibirufi-5mq.pages.dev
Scan results are mixed at the time of this scan. One out of 91 security engines flagged the domain, while most engines did not report a detection. Malware scanning also reported a generic suspicious-object finding tied to one JavaScript asset and several internal resource URLs, but the threat naming is broad and heuristic rather than a clearly identified malware family. Major blacklist and threat-database checks were largely clean, with only one generic listing present.
The page content appears polished and closely aligned with Nibiru Chain branding, and it links to the project’s apparent main domain and social/community profiles. However, this is a hosted subdomain rather than the main branded domain, and the page includes a wallet connection prompt tied to an airdrop-themed workflow. In cryptocurrency contexts, that combination can increase user risk if the page is unofficial, misleading, or used to solicit wallet interactions.
Based on the limited multi-engine detection, mostly clean blacklist status, and the presence of generic heuristic alerts rather than broad consensus, the evidence is not conclusive. Even so, because the page asks users to connect a wallet and is hosted on a secondary subdomain, visitors may want to verify that it is officially linked from the main project before interacting. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The domain is hosted behind Cloudflare infrastructure and resolves to a Cloudflare IP in Canada. It uses a valid TLS certificate issued by Google Trust Services, with certificate validity extending into 2026. The domain itself is about five years old, which is a more established age than many short-lived malicious domains, and its registration is active through 2026. DNSSEC appears to be unsigned.
From a security perspective, the main technical concerns are the heuristic detection on a JavaScript file, the generic suspicious-object labeling on several internal asset URLs, and the fact that the site operates from a pages.dev subdomain rather than the main branded domain. None of these signals alone confirms malicious behavior, but they do suggest that users should verify authenticity before connecting wallets or approving blockchain transactions.
Share your experience with this website. Was it safe? Did you encounter any issues?