gala-event[.]app
“$GALA Token Airdrop - Gala”
Zusammenfassung der Beweislage
On 22 July 2026, the domain gala-event.app was identified as a malicious site targeting users interested in Ethereum. The site advertised a $GALA Token Airdrop, as reflected in the page title “$GALA Token Airdrop - Gala”. Technical analysis shows the domain resolves to the IP address 91.202.233.233, which is registered to an Autonomous System (AS200593) operated by PROSPERO OOO in Russia. The SSL certificate presented is classified as R10, and the Gridinsoft trust score is 0 out of 100, indicating a lack of trustworthiness.
VirusTotal reports that five of ninety‑three scanning engines flagged the domain, confirming the presence of malicious components. Five independent blocklists—PhishDestroy, ScamSniffer, Polkadot, Enkrypt, and Codeesura—have already added the domain, and it appears on a total of five security blocklists. The site is associated with a known “Airdrop Scam” phishing kit, and the overall scam type is recorded as a crypto scam. The domain was registered on 21 February 2026 and is currently listed as offline, suggesting the operators have taken the site down, either voluntarily or as a result of takedown actions.
While the page title and kit provide clear evidence of a cryptocurrency‑related deception, the exact content of the landing page has not been captured, leaving the specific user‑interaction flow uncertain. Defenders should block the domain and the associated IP address at the network perimeter, update URL filtering rules to include the identified blocklist entries, and monitor for any new domains resolving to the same IP or ASN. Continuous re‑scanning with multi‑vendor services is advised to detect any re‑appearance, and incident response teams should treat any credentials or wallet information entered on this site as compromised.
Data Coverage
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Blocklistenabdeckung
10 überwachte externe Feeds · gespeicherter Stand 11.08.2026
6 überwachte externe Feeds Kein Treffer
Forensische Erkenntnisse
VirusTotal-Analyse
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt