# airdrop.mnnt.finance — MALICIOUS — Crypto Drainer (Angel Drainer) > airdrop.mnnt.finance is a high-risk crypto drainer flagged for scams. Avoid interacting with it to protect your assets and privacy. ## Summary PhishDestroy identifies airdrop.mnnt.finance as a high-risk threat associated with crypto draining activities. This domain was linked to a phishing campaign masquerading as a 'Momentum Airdrop' to lure users into compromising their cryptocurrency wallets. The domain was registered via Cloudflare, Inc. and resolved to the IP 172.67.162.111. It was associated with the Angel Drainer kit, a known tool for stealing crypto funds. Multiple security blocklists flag this domain, and Google Safe Browsing categorizes it under social engineering threats. Scamadviser rates it extremely low on trustworthiness, indicating a high likelihood of malicious intent. Currently taken offline, airdrop.mnnt.finance no longer resolves, mitigating immediate risk. Users should remain cautious and avoid any interaction with similar domains promising crypto rewards. Employing strong security hygiene and verifying domain legitimacy can help prevent falling victim to such drainers. ## Threat Details - Verdict: MALICIOUS — Crypto Drainer (Angel Drainer) - Site status: dead (HTTP 403) - Drainer type: Angel Drainer - Scam type: Airdrop Scam - Page title: Momentum Airdrop ## Domain Intelligence - Registrar: Cloudflare, Inc. - Country: US - IP: 172.67.162.111 - IP Country: US - IP City: San Francisco - IP Org: AS13335 Cloudflare, Inc. - Nameservers: NS_NOT_FOUND - SSL Issuer: none ## Detection Status - VirusTotal: 13 vendors flagged Vendors: ["ADMINUSLabs", "ChainPatrol", "alphaMountain.ai", "BitDefender", "CyRadar", "Fortinet", "G-Data", "Google Safebrowsing", "Lionic", "Seclookup", "Sophos", "VIPRE", "Webroot"] - Google Safe Browsing: FLAGGED - Blocklists: 3 hits Lists: ["PhishDestroy", "MetaMask", "SEAL"] ## Evidence - Screenshot: https://urlscan.io/screenshots/019a4a18-d65f-7288-af9e-aa3e317088a5.png - Cloudflare Radar: https://radar.cloudflare.com/scan/44ee0e79-e374-46be-b676-2ab3e596d710 - PhishDestroy: https://phishdestroy.io/domain/airdrop.mnnt.finance/ - LLM endpoint: https://phishdestroy.io/domain/airdrop.mnnt.finance/llm.txt ## If You Visited This Site 1. Revoke all token approvals immediately (revoke.cash / unrekt.net) 2. Move remaining funds to a new wallet 3. Do not interact with any transactions from this site 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/airdrop.mnnt.finance/ Last updated: 2026-03-19