barterdefi[.]airdropsalert[.]biz
“Google”
barterdefi.airdropsalert.biz — Contenu indisponible. Usurpation de l'identité de la marque : Google; Type d'arnaque : Crypto Scam. Résumé des preuves: VirusTotal 14/95 (ChainPatrol, alphaMountain.ai, BitDefender, CyRadar, ESET); Google Safe Browsing flagged; PhishDestroy score 92/100. Bureau d’enregistrement: Dynadot.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
barterdefi.airdropsalert.biz was registered on October 18, 2025 through Dynadot LLC and is served by the Cloudflare name servers brenna.ns.cloudflare.com and hassan.ns.cloudflare.com. The domain resolves to IP address 142.251.40.228, which is owned by Google LLC (AS15169) and located in the United States. No TLS certificate is present, indicating the site does not offer encrypted connections. The page title returned by the HTTP response is “Google”, matching the declared brand target of Google, and the campaign is classified as a crypto‑scam. Google Safe Browsing lists the domain under two social‑engineering entries, and VirusTotal reports that 14 of 95 security vendors have flagged the host as malicious.
Gridinsoft assigns a trust score of 0 / 100, and the domain appears on one external blocklist. PhishDestroy has taken the site offline, and its current status is recorded as offline. The observable infrastructure suggests a deliberate attempt to leverage the reputation of Google to lure victims into a cryptocurrency‑related fraud. The use of a Google‑owned IP address may be intended to increase perceived legitimacy, while the absence of TLS and the low trust score reinforce the malicious intent.
Because the site is no longer reachable, content‑level analysis is not possible; however, the combination of brand impersonation, the crypto‑scam label, and multiple vendor detections confirms a high‑risk profile. Defenders should add barterdefi.airdropsalert.biz to URL and DNS blocklists, enforce TLS inspection policies to reject unencrypted connections to this host, and monitor for any future re‑registration of similar domains. Continued surveillance of the associated IP range and the Cloudflare name servers is advised, as threats may shift to adjacent hosts. Network traffic to 142.251.40.228 originating from untrusted endpoints should be flagged for investigation.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
ICANN OVERSIGHT
Registration: airdropsalert.biz
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain airdropsalert.biz behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse forensique
Analyse VirusTotal
Preuves archivées
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif