zen[.]airdropalerts[.]pro
“Google”
zen.airdropalerts.pro — Contenu indisponible (HTTP 502). Usurpation de l'identité de la marque : Google; Type d'arnaque : Crypto Scam. Résumé des preuves: VirusTotal 9/93 (ADMINUSLabs, ChainPatrol, CRDF, CyRadar, ESET); PhishDestroy score 77/100. Bureau d’enregistrement: Dynadot.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
This domain is flagged as an elevated-risk brand impersonation threat specifically targeting Google. Analysis indicates the infrastructure is designed to deceive users into believing they are interacting with legitimate Google services, likely for credential theft or unauthorized account access. The domain exhibits multiple technical indicators of malicious intent, aligning with known patterns of brand spoofing campaigns. Infrastructure analysis reveals the domain zen.airdropalerts.pro was registered on November 27, 2025, through Dynadot LLC. It resolves to the IP address 142.250.184.196, though this IP is also associated with legitimate Google services, suggesting an attempt to blend malicious activity with trusted infrastructure. Security vendors on VirusTotal flagged the domain at a 9/95 detection rate, indicating widespread recognition of its malicious nature. The domain appears on at least one security blocklist and has been taken offline following detection. Gridinsoft assigns a trust score of 0/100, further confirming its high-risk classification. The page title explicitly mimics Google, reinforcing the brand impersonation tactic. Mitigation steps for organizations and users include immediate blocking of the domain across all security gateways and endpoint protection systems. Network administrators should monitor for any residual connections to the IP address 142.250.184.196, particularly those originating from user interactions with suspicious links. Users who may have interacted with the domain should be instructed to reset their Google account credentials and enable multi-factor authentication. Security teams should review logs for any signs of credential harvesting activity tied to this domain and conduct internal awareness training to highlight the risks of brand impersonation attacks. Proactive monitoring for similar domains registered through Dynadot LLC or resolving to the same IP range is recommended to identify potential follow-up campaigns.
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
ICANN OVERSIGHT
Registration: airdropalerts.pro
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain airdropalerts.pro behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse forensique
Analyse VirusTotal
Preuves archivées
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif