# airdrop.newtons.run — SUSPICIOUS > Discover the risks behind airdrop.newtons.run, a crypto drainer domain now offline. Learn what to watch for and stay protected. ## Summary PhishDestroy identifies airdrop.newtons.run as a low-risk crypto drainer domain. Although classified as a threat to cryptocurrency users, the overall danger level is considered minimal due to limited activity and swift removal. This domain, registered on February 21, 2026, was flagged by one security blocklist and detected by two out of 95 security vendors on VirusTotal. The domain was registered through a now-defunct registrar, indicating weak infrastructure and questionable legitimacy. Its primary function appeared to facilitate unauthorized crypto asset extraction, commonly known as a crypto drainer. Currently, airdrop.newtons.run is offline, reducing immediate threat exposure. Users should remain cautious by avoiding suspicious airdrop links and verifying domain reputation before interacting with crypto offers. Maintaining updated security software and awareness of emerging crypto scams remains essential for safety. ## Threat Details - Verdict: SUSPICIOUS - Site status: alive (HTTP 530) - Scam type: Airdrop Scam ## Domain Intelligence - Registered: 2026-02-21 07:01:08 - Registrar: Dead domain ## Detection Status - VirusTotal: 2 vendors flagged Vendors: ["Gridinsoft", "Trustwave"] - Google Safe Browsing: clean - Blocklists: 1 hits Lists: ["PhishDestroy"] ## Evidence - PhishDestroy: https://phishdestroy.io/domain/airdrop.newtons.run/ - LLM endpoint: https://phishdestroy.io/domain/airdrop.newtons.run/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/airdrop.newtons.run/ Last updated: 2026-03-16