airdrop-x[.]xyz
“– このドメインはお名前.comで取得されています。”
airdrop-x.xyz — Nicht bestätigt. Betrugstyp: Airdrop Scam. Zusammenfassung der Beweislage: VirusTotal 2/95 (alphaMountain.ai, Forcepoint ThreatSeeker); PhishDestroy score 61/100. Registrar: GMO Internet.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
The domain airdrop-x.xyz was identified as a brand impersonation threat specifically targeting users of airdrop scams. This domain was designed to mimic legitimate airdrop platforms, likely aiming to trick visitors into connecting their wallets or providing sensitive information, effectively serving as a crypto drainer. The threat type is brand impersonation with a focus on credential theft and asset draining.
Technical indicators for airdrop-x.xyz include a VirusTotal score of 2/95 security vendors flagging the domain, indicating some but not widespread detection. The domain was registered through GMO Internet, Inc. and resolves to IP address 150.95.255.38. It was created on July 08, 2025, and its SSL certificate was issued by GoDaddy.com, Inc. via the Go Daddy Secure Certificate Authority - G2. The domain appears on 1 security blocklist and is not listed on Google Safe Browsing (GSB) as malicious, though the blocklist presence suggests some recognition of its harmful intent.
As of the latest intelligence, airdrop-x.xyz is offline, meaning the hosting or domain has been taken down, likely due to abuse reports or registrar intervention. The response actions have effectively neutralized the immediate threat, but users should remain vigilant as similar domains may reappear. The remaining risk is low for those who do not seek out airdrop opportunities, but anyone who previously visited the site should monitor their crypto wallets and accounts for unauthorized activity. Always verify airdrop URLs through official channels and avoid connecting wallets to unknown sites.
Sicherheitssignale
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Gespeicherte Aufnahme
Domain-Intelligenz
Technische DetailsDNS, SSL-SANs, Zeitstempel
ICANN OVERSIGHT
Akkreditierung und RAA-Kontext
Akkreditierung und RAA-Kontext
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologien · 5 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org 100 % KonfidenzEnvoy is an open-source edge and service proxy, designed for cloud-native applications.
www.envoyproxy.io 100 % KonfidenzExpress is a web application framework for Node.js, released as free and open-source software under the MIT License. It is designed for building web applications and APIs.
expressjs.com 100 % KonfidenzHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100 % KonfidenzAkamai is global content delivery network (CDN) services provider for media and software delivery, and cloud security solutions.
akamai.com 100 % KonfidenzVirusTotal-Analyse
Archivierte Beweise
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of airdrop-x.xyz · checked Mar 2, 2026
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt