wallet-airdrops[.]com
Forensic brief
PhishDestroy identifies wallet-airdrops.com as an active brand impersonation domain targeting users in crypto airdrop spaces. The domain masquerades as a legitimate airdrop platform while concealing a crypto drainer kit designed to siphon funds from connected wallets. Campaigns leverage fake airdrop announcements to lure victims into connecting their wallets, triggering malicious contract interactions that drain tokens without consent. This tactic mirrors known operations in the wild where fraudulent airdrop sites deploy unverified smart contracts to execute unauthorized token transfers. This domain exhibits several high-risk technical indicators. VirusTotal currently flags it with 0/95 detections—indicating it has not yet been recognized by most antivirus engines. It was registered through Porkbun LLC on May 13, 2026, and resolves to the IP address 44.230.85.241. The SSL certificate is issued by Let's Encrypt, providing a false veneer of legitimacy. Google Safe Browsing (GSB) has not yet listed this domain, and it remains absent from major blocklists as of this report. These attributes suggest a recently activated, low-profile campaign with minimal detection coverage. Current status of wallet-airdrops.com is active and under ongoing investigation. While no takedown has been initiated, the domain remains operational and accessible. Given its use of a crypto drainer and zero detections on VirusTotal, the risk to cryptocurrency users is assessed as high—particularly to those engaging with airdrop promotions. Immediate action is required: block the domain at DNS and network levels, flag the associated IP, and advise users to avoid interacting with any airdrop links originating from this domain. Further monitoring is recommended to track distribution vectors and potential wallet compromise. Remaining risk includes continued victimization and fund loss until the domain is blocked or taken down.
Threat response pipeline
Cloudflare Radar
VirusTotal
Forensic Evidence CollectionEvidence capture
Domain Intelligence
Porkbun LLC
Technical details
Public blocklist status
Technologies
Technologies · 7 identified
VirusTotal consensus
Aggregated detection across 95 security vendors.
Site performance
Site performance analysis
Google PageSpeed Insights — mobile audit of wallet-airdrops.com
Evidence & external reports
Were you affected by this site?
Were You Affected?
Report to your local authorities
Email template — registrar abuse
abuse@porkbun.com
Registrar: Porkbun LLC Case: PD-
Embed this report
About this report
About this report: wallet-airdrops.com
This domain security report is maintained by PhishDestroy's automated threat-intelligence pipeline. Our system continuously monitors this domain across 95 security vendors on VirusTotal and 2 public blocklists.
The site displays a page titled “A Brand New Domain!”.
wallet-airdrops.com has been flagged by 1 security vendors as of May 17, 2026.
If you believe this listing is inaccurate, you can submit an appeal. For more information about our methodology, visit our FAQ page.