aerodrome-snapshot[.]xyz
“Aerodrome — Airdrop”
aerodrome-snapshot.xyz — Non verificato. Simulazione del marchio: Genericcrypto; Tipo di truffa: Fake Airdrop. Riepilogo delle prove: VirusTotal 12/94 (ADMINUSLabs, alphaMountain.ai, ESET, Forcepoint ThreatSeeker, Kaspersky); URLScan malicious verdict; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 86/100. Registrar: NiceNIC.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
PhishDestroy identifies aerodrome-snapshot.xyz as a high-risk crypto drainer phishing domain posing as a legitimate service. This domain was flagged due to its recent registration, suspicious SSL certificate, and lack of detection on VirusTotal. Users should avoid interacting with this site to prevent financial loss. PhishDestroy's analysis reveals that aerodrome-snapshot.xyz resolves to IP 188.114.96.3, a known malicious hosting infrastructure. The domain was created on March 29, 2026, a suspiciously recent date that suggests opportunistic registration. VirusTotal currently reports 12/95 detections, meaning traditional antivirus tools have not yet flagged this domain. The domain is registered through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar often exploited by threat actors for bulletproof hosting. Additionally, the use of a Let's Encrypt SSL certificate further legitimizes the appearance of this fraudulent site. This domain specifically targets cryptocurrency users by impersonating Aerodrome Finance or a related DeFi protocol. The threat level is marked as 'active' and 'under_investigation' due to the evolving nature of crypto drainer campaigns. If you have visited aerodrome-snapshot.xyz, immediately revoke any wallet permissions and transfer funds to a secure wallet. Run a malware scan on your device and monitor for unauthorized transactions. Report this domain to PhishDestroy to help prevent others from falling victim to this scam.
Informazioni sulla sicurezza di rete Registrar context
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-19 02:52:04 UTC
Tecnologie · 4 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of aerodrome-snapshot.xyz · checked Mar 30, 2026
Dati e relazioni esterne
PD-20260330-FC93DA Recipient: abuse@nicenic.net, abuse@gen.xyz, compliance@icann.org Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo