# usdwon.com — MALICIOUS > usdwon.com is a medium-risk phishing domain now offline. Stay vigilant and verify before sharing info online. Check usdwon.com status at PhishDestroy. ## Summary PhishDestroy identifies usdwon.com as a generic phishing threat posing a medium risk to users. Such domains are typically designed to deceive visitors into divulging sensitive information, potentially leading to financial loss or identity theft. The presence of this domain on multiple blocklists underscores its malicious intent and the importance of awareness. The domain usdwon.com was registered on February 21, 2026, but is currently offline and listed as a dead domain. Despite being inactive now, it appeared on three security blocklists and was flagged by several security vendors on VirusTotal, indicating prior detection of suspicious activity. Its registration and infrastructure details suggest it was part of a transient phishing operation. Users are advised to avoid interacting with usdwon.com and remain cautious when encountering unfamiliar websites requesting personal information. Regularly updating security software and verifying website credibility through trusted sources like PhishDestroy can help mitigate the risks posed by such phishing domains. If you encounter suspicious sites or messages, report them promptly to protect yourself and others. ## Threat Details - Verdict: MALICIOUS - Site status: alive (HTTP 530) - Target brand: Lido - Page title: Check Eligibility for 30 ETH Airdrop | Lido ## Domain Intelligence - Registered: 2026-02-21 07:01:08 - IP: 188.114.96.3 - IP Country: US - IP City: San Francisco - IP Org: AS13335 Cloudflare, Inc. - SSL Issuer: WE1 ## Detection Status - VirusTotal: 5 vendors flagged Vendors: ["ChainPatrol", "alphaMountain.ai", "CyRadar", "Fortinet", "Seclookup"] - Google Safe Browsing: clean - Blocklists: 3 hits Lists: ["PhishDestroy", "MetaMask", "SEAL"] ## Evidence - Screenshot: https://urlscan.io/screenshots/01990116-f367-7753-a4fe-14d76094f2a7.png - PhishDestroy: https://phishdestroy.io/domain/usdwon.com/ - LLM endpoint: https://phishdestroy.io/domain/usdwon.com/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/usdwon.com/ Last updated: 2026-03-18