sui[.]airdropalert[.]us
“Google”
sui.airdropalert.us — المحتوى غير متوفر (HTTP 502). انتحال العلامة التجارية: Google; نوع الاحتيال: Crypto Scam. ملخص الأدلة: VirusTotal 11/93 (ChainPatrol, alphaMountain.ai, BitDefender, CRDF, CyRadar); PhishDestroy score 83/100. مسجّل النطاق: Dynadot.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Analysis of the domain sui.airdropalert.us, observed as offline as of the report date, indicates an active brand‑impersonation campaign targeting Google. The domain was registered through Dynadot LLC on 19 October 2025 and is served from the IP address 142.251.111.147, which belongs to AS15169 Google LLC and is geolocated in the United States. DNS resolution is handled by the Cloudflare name servers brenna.ns.cloudflare.com and hassan.ns.cloudflare.com. No SSL certificate was presented at the time of observation, implying the site operated over plain HTTP.
The page title returned by the server reads “Google”, aligning with the declared brand target. The Gridinsoft trust score rates the domain at 0 / 100, and the domain appears on a single security blocklist (PhishDestroy). VirusTotal reports that 11 of 93 scanning engines flagged the domain, reinforcing the suspicion of malicious activity. The campaign is classified as a crypto scam, consistent with the “airdrop” terminology embedded in the subdomain.
Defenders should note the combination of a recent registration, use of reputable Cloudflare DNS, and hosting on a Google‑owned IP range, which can reduce initial suspicion. However, the lack of TLS, low trust score, and multiple vendor detections indicate a high likelihood of abuse. Recommended mitigation steps include adding sui.airdropalert.us to local deny lists, monitoring DNS queries for the associated Cloudflare name servers, and updating URL filtering rules to block the resolved IP address. Continuous re‑evaluation is advised, as the offline status may change if the operators reactivate the site.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
الاستخبارات الجنائية الرقمية
تحليل VirusTotal
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب