# airdrop-prlvasea.run — SUSPICIOUS > Warning: airdrop-prlvasea.run is linked to crypto drainer activity and appears on multiple blocklists. Avoid interaction; domain is offline. ## Summary PhishDestroy identifies airdrop-prlvasea.run as a low-risk crypto drainer threat, aimed at compromising cryptocurrency assets through deceptive means. The domain was flagged due to suspicious behavior related to unauthorized crypto fund draining. The domain was registered on February 21, 2026, via PDR Ltd. d/b/a PublicDomainRegistry.com and resolved to the IPv6 address 2a06:98c1:3120::3. It appeared on three security blocklists and was detected by two out of 95 VirusTotal security vendors, indicating limited but notable malicious activity. Currently, airdrop-prlvasea.run is offline and no longer resolving. Users are advised to avoid any interaction with this domain or similar suspicious airdrop sites to protect their crypto assets. Continuous monitoring for related domains is recommended. ## Threat Details - Verdict: SUSPICIOUS - Site status: dead (HTTP 403) - Scam type: Airdrop Scam - Page title: Just a moment... ## Domain Intelligence - Registered: 2026-02-21 07:01:08 - Registrar: PDR Ltd. d/b/a PublicDomainRegistry.com - Country: IN - IP: 2a06:98c1:3120::3 - IP Country: US - IP City: San Francisco - IP Org: AS13335 Cloudflare, Inc. - Nameservers: ["mary.ns.cloudflare.com", "dax.ns.cloudflare.com"] - SSL Issuer: Google Trust Services / WE1 ## Detection Status - VirusTotal: 2 vendors flagged Vendors: ["Gridinsoft", "Trustwave"] - Google Safe Browsing: clean - Blocklists: 3 hits Lists: ["PhishDestroy", "MetaMask", "SEAL"] ## Evidence - Screenshot: https://urlscan.io/screenshots/0199315e-ccbe-731b-8c1f-076582823ea4.png - Cloudflare Radar: https://radar.cloudflare.com/scan/3df7fad4-2067-4d8c-bf1e-8f11ec2a9d9e - PhishDestroy: https://phishdestroy.io/domain/airdrop-prlvasea.run/ - LLM endpoint: https://phishdestroy.io/domain/airdrop-prlvasea.run/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/airdrop-prlvasea.run/ Last updated: 2026-03-19