# airdrop.skyexpressglobal.com — SUSPICIOUS > Discover the risks behind airdrop.skyexpressglobal.com, a now offline domain linked to crypto draining attempts. Stay informed and protected. ## Summary PhishDestroy identifies airdrop.skyexpressglobal.com as a domain associated with crypto drainer activities, a type of threat designed to illicitly access and transfer cryptocurrency assets from victims’ wallets. These threats are significant as they can lead to substantial financial loss for users who interact with the malicious infrastructure, often under the guise of legitimate airdrop promotions or giveaways. Investigations reveal that airdrop.skyexpressglobal.com was registered with a dead domain registrar and first created on February 21, 2026. Despite its short lifespan, it was flagged on one security blocklist and detected by a minority of security engines, indicating its suspicious nature. The domain is currently offline, which limits ongoing risk, but its association with crypto draining tools underscores a broader trend in crypto-related cyber threats. Users are advised to remain vigilant when dealing with any unsolicited airdrop offers or cryptocurrency-related domains, particularly those that appear newly registered or hosted on questionable infrastructure. Avoid interacting with unfamiliar links promising free tokens and ensure wallet security by using trusted applications. Regularly updating security software and verifying domain legitimacy can mitigate exposure to similar threats in the future. ## Threat Details - Verdict: SUSPICIOUS - Site status: alive (HTTP 530) - Scam type: Airdrop Scam - Page title: Airdrop Rush ## Domain Intelligence - Registered: 2026-02-21 07:01:08 - SSL Issuer: R11 ## Detection Status - VirusTotal: 2 vendors flagged Vendors: ["Gridinsoft", "Kaspersky"] - Google Safe Browsing: clean - Blocklists: 1 hits Lists: ["PhishDestroy"] ## Evidence - Screenshot: https://urlscan.io/screenshots/0199315b-0b25-7596-b3fd-1ad7426f1a36.png - PhishDestroy: https://phishdestroy.io/domain/airdrop.skyexpressglobal.com/ - LLM endpoint: https://phishdestroy.io/domain/airdrop.skyexpressglobal.com/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/airdrop.skyexpressglobal.com/ Last updated: 2026-03-19