# aircrypto.info — MALICIOUS > Beware of aircrypto.info promoting fake crypto airdrops. Avoid sharing personal info and never trust suspicious token giveaways online. ## Summary PhishDestroy identifies aircrypto.info as a medium-risk generic phishing domain targeting cryptocurrency users. The site purported to offer an exclusive token airdrop for 2025, a common lure to harvest sensitive information from victims. The domain was registered recently on November 22, 2025, with the intent to deceive users by exploiting crypto-related hype. Technical analysis reveals that aircrypto.info resolved to the IP address 91.92.242.155 and was flagged by 5 out of 95 security vendors on VirusTotal. The domain also appears on three security blocklists and holds a low trust score of 40/100 on Scamadviser, indicating poor reputation and potential malicious activity. It was registered through Web Commerce Communications Limited, a registrar frequently associated with suspicious domain creations. Currently, the domain is offline, suggesting that takedown or sinkholing efforts have been successful in mitigating the threat. Users are advised to stay vigilant against similar phishing schemes that promise crypto rewards and to avoid engaging with domains exhibiting these risk indicators. PhishDestroy continues to monitor aircrypto.info for any reemergence or related threats. ## Threat Details - Verdict: MALICIOUS - Site status: dead (HTTP 403) - Scam type: Airdrop Scam - Page title: CryptoAir | Exclusive Token Airdrop 2025 ## Domain Intelligence - Registered: 2025-11-22 00:00:00 - Expires: 2026-11-22 00:00:00 - Registrar: Web Commerce Communications Limited - Country: MY - IP: 91.92.242.155 - IP Country: NL - IP City: Amsterdam - IP Org: AS202412 Omegatech LTD - Nameservers: chris.ns.cloudflare.com annalise.ns.cloudflare.com - SSL Issuer: none ## Detection Status - VirusTotal: 5 vendors flagged Vendors: ["alphaMountain.ai", "CyRadar", "ESET", "Gridinsoft", "SOCRadar"] - Google Safe Browsing: clean - Blocklists: 3 hits Lists: ["PhishDestroy", "MetaMask", "ScamSniffer"] ## Evidence - Screenshot: https://urlscan.io/screenshots/019acbc8-194e-731d-bc1a-3ae3d22250d2.png - Cloudflare Radar: https://radar.cloudflare.com/scan/19f7ce68-5e4c-449e-9cd6-7b70659281bc - PhishDestroy: https://phishdestroy.io/domain/aircrypto.info/ - LLM endpoint: https://phishdestroy.io/domain/aircrypto.info/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/aircrypto.info/ Last updated: 2026-03-19