lido[.]airdropalert[.]us
“Google”
lido.airdropalert.us — المحتوى غير متوفر. انتحال العلامة التجارية: Lido; نوع الاحتيال: Crypto Scam. ملخص الأدلة: VirusTotal 13/93 (ChainPatrol, alphaMountain.ai, BitDefender, Certego, CRDF); Google Safe Browsing flagged; PhishDestroy score 89/100. مسجّل النطاق: Dynadot.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
The domain lido.airdropalert.us was registered on October 19, 2025 through Dynadot LLC and is currently flagged as offline. Infrastructure analysis shows the domain resolves to IP address 142.251.163.106, which belongs to AS15169 owned by Google LLC and is geolocated in the United States. The name servers listed are brenna.ns.cloudflare.com and hassan.ns.cloudflare.com, indicating use of Cloudflare DNS services. No SSL certificate is presented for the site, meaning traffic would be unencrypted if the domain were active.
The page title returned by the HTTP response is "Google," providing no direct indication of malicious content. Google Safe Browsing classifies the domain under social engineering, and Gridinsoft assigns a trust score of 0 out of 100, reflecting a high likelihood of abuse. VirusTotal scans report that 13 of 93 security vendors label the domain as malicious, and the domain appears on one external blocklist. PhishDestroy has already blocked the domain.
The threat type is identified as brand impersonation targeting the cryptocurrency staking platform Lido, and the scam category is noted as a crypto scam. While the available data confirms the domain’s association with Lido impersonation and its malicious classification, the exact payload, phishing page layout, and credential‑harvesting mechanisms have not been captured. Defenders should add lido.airdropalert.us to URL filtering and DNS blocklists, monitor for any re‑registration attempts, and enforce TLS inspection policies to detect any future unencrypted traffic. Continuous vigilance is recommended, as the domain’s infrastructure—particularly its reliance on Google‑owned IP space and Cloudflare DNS—could be leveraged for rapid redeployment if the operators revive the site.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
الاستخبارات الجنائية الرقمية
تحليل VirusTotal
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب