# airdrops.chogxyz.cfd — MALICIOUS > Beware of airdrops.chogxyz.cfd, a crypto drainer domain flagged by security tools. Avoid interaction and protect your assets from potential theft. ## Summary PhishDestroy has identified airdrops.chogxyz.cfd as a potentially harmful domain linked to crypto theft. This site was designed to deceive users by promising crypto airdrops but instead aimed to drain victims' cryptocurrency wallets. Such scams put your digital assets at significant risk, leading to financial losses. This domain operated by mimicking legitimate crypto airdrop offers to lure users into providing private keys or wallet access. Once users engaged, malicious scripts or social engineering tactics attempted to extract sensitive information or transfer crypto funds without consent. The site’s suspicious page title, “Nur einen Moment…,” was likely used to stall and keep users engaged while the scam executed. If you have visited airdrops.chogxyz.cfd, PhishDestroy advises immediate caution. Do not enter any credentials or wallet details on such sites. If you suspect your crypto wallet has been compromised, transfer remaining funds to a secure wallet and consider revoking permissions for connected apps. Monitor your accounts closely and use trusted security software to detect further threats. ## Threat Details - Verdict: MALICIOUS - Site status: dead (HTTP 403) - Scam type: Airdrop Scam - Page title: Nur einen Moment… ## Domain Intelligence - Registered: 2025-09-30 05:07:59 - Expires: 2026-09-30 23:59:59 - Registrar: Web Commerce Communications Limited - Country: MY - IP: 104.21.38.242 - IP Country: US - IP City: San Francisco - IP Org: AS13335 Cloudflare, Inc. - Nameservers: amit.ns.cloudflare.com sandra.ns.cloudflare.com - SSL Issuer: none ## Detection Status - VirusTotal: 7 vendors flagged Vendors: ["alphaMountain.ai", "CRDF", "CyRadar", "Fortinet", "Gridinsoft", "Lionic", "SOCRadar"] - Google Safe Browsing: clean - Blocklists: 1 hits Lists: ["PhishDestroy"] ## Evidence - Screenshot: https://urlscan.io/screenshots/0199a787-39d4-744a-bee9-8c331667a07d.png - Cloudflare Radar: https://radar.cloudflare.com/scan/ec56ac6b-6504-444a-9512-468dbdddfb50 - PhishDestroy: https://phishdestroy.io/domain/airdrops.chogxyz.cfd/ - LLM endpoint: https://phishdestroy.io/domain/airdrops.chogxyz.cfd/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/airdrops.chogxyz.cfd/ Last updated: 2026-03-19