arciumairdrop[.]xyz
“Arcium Token Airdrop | ARX Presale”
The site arciumairdrop.xyz presented itself as a cryptocurrency token airdrop and presale for "Arcium" and "ARX," but it was flagged as an impersonating airdrop scam. The threat posed is credential and cryptocurrency theft, as fraudulent airdrops typically trick users into connecting wallets or revealing private keys to claim nonexistent tokens.
Technical evidence: VirusScan detected the site as malicious by 15 out of 95 vendors. Google Safe Browsing flagged it for SOCIAL_ENGINEERING. Blocklists include 1 entry. The IP address 45.12.2.67 is hosted in Ukraine by AS6698 Virtual Systems LLC. The domain was registered on 2025-10-14 with registrar Ultahost, Inc. and uses nameservers ns1.arciumairdrop.xyz and ns2.arciumairdrop.xyz. No SSL certificate was present. Trust scores are 0/100 (GridinSoft) and 1/100 (ScamAdviser).
The site is currently down or offline, but the domain remains active. Risk level is critical due to confirmed impersonation, high detection rate, and low trust scores. Users should avoid any interaction with this domain.
Security Signals
Threat Response Pipeline
Public Blocklist Status
Stored Capture
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Forensic Intelligence
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive