# airdrop.devnetinference.xyz — MALICIOUS > Warning: The domain airdrop.devnetinference.xyz is linked to crypto drainer malware. Avoid interaction; the site is currently offline. ## Summary PhishDestroy identifies the domain airdrop.devnetinference.xyz as a medium-risk crypto drainer threat aimed at compromising users’ cryptocurrency assets. Classified under crypto malware, this domain was created recently and designed to lure victims with fraudulent airdrop offers. Technical analysis shows the domain was registered on February 21, 2026, through a dead domain registrar and has appeared on two security blocklists. VirusTotal detection rates highlight moderate malicious activity, with several security vendors flagging the domain. The infrastructure appears transient, facilitating rapid deployment of crypto theft mechanisms. Currently, airdrop.devnetinference.xyz has been taken offline, mitigating immediate risks. PhishDestroy recommends users remain vigilant against similar crypto-themed phishing schemes and avoid engagement with suspicious airdrop domains. Continued monitoring of related infrastructure is advised to prevent future incidents. ## Threat Details - Verdict: MALICIOUS - Site status: alive (HTTP 530) - Scam type: Airdrop Scam ## Domain Intelligence - Registered: 2026-02-21 07:01:08 - Registrar: Dead domain - IP: 172.67.197.21 - SSL Issuer: WE1 ## Detection Status - VirusTotal: 6 vendors flagged Vendors: ["alphaMountain.ai", "CyRadar", "Forcepoint ThreatSeeker", "Fortinet", "G-Data", "SOCRadar"] - Google Safe Browsing: clean - Blocklists: 2 hits Lists: ["PhishDestroy", "ScamSniffer"] ## Evidence - Screenshot: https://urlscan.io/screenshots/019801d2-4a33-705c-af6d-abf227a28d14.png - PhishDestroy: https://phishdestroy.io/domain/airdrop.devnetinference.xyz/ - LLM endpoint: https://phishdestroy.io/domain/airdrop.devnetinference.xyz/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/airdrop.devnetinference.xyz/ Last updated: 2026-03-16