threshold[.]airdropsalert[.]us
“Google”
Resumen de las pruebas
This domain, threshold.airdropsalert.us, was registered through Dynadot LLC and first observed on 18 Oct 2025. The authoritative name servers are brenna.ns.cloudflare.com and hassan.ns.cloudflare.com, indicating the use of Cloudflare DNS. DNS resolution points to IP address 142.251.156.119, which belongs to AS15169 Google LLC and is geolocated in the United States. No TLS certificate is presented; the site serves HTTP only.
The page title returned by the server is “Google”, matching the declared brand target of Google and confirming a brand‑impersonation intent. The activity has been classified as a Crypto Scam, and the domain appears on one external security blocklist, where it is listed by PhishDestroy. VirusTotal has recorded 13 of 93 scanning engines flagging the domain, reinforcing the malicious assessment. The site is currently taken offline, so live content cannot be inspected, and the exact payload or phishing page structure remains unknown.
Nonetheless, the combination of brand impersonation, cryptocurrency‑related fraud labeling, blocklist inclusion, and multiple vendor detections provides sufficient confidence for defensive action. Defenders should add the hostname and its resolving IP to blocklists, enforce TLS‑only policies to prevent insecure HTTP connections, and monitor for any resurgence of the domain or similar sub‑domains that resolve to the same Google‑owned IP range. Ongoing watch on the registrar Dynadot for new registrations using similar naming patterns is also advised.
Data Coverage
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 11/08/2026
10 fuentes externas supervisadas Sin coincidencias
Cronología de detección
-
Cloudflare Radar
Análisis de Cloudflare Radar almacenado · Abrir análisis
Análisis de VirusTotal
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.