eul[.]airdropalert[.]us
“Google”
証拠の概要
Analysis of the domain eul.airdropalert.us indicates a high-risk phishing campaign impersonating Google, classified as a crypto scam. The domain was registered on October 19, 2025, through Dynadot LLC and currently resolves to the IP address 172.253.63.104, which is geolocated in the United States under AS15169 (Google LLC). Despite the IP being associated with Google's infrastructure, this does not confirm legitimacy, as threat actors may exploit hosting services for malicious purposes. The domain lacks an SSL certificate, increasing the risk of unencrypted data transmission. As of the report date, the domain is offline, though it remains flagged by one security blocklist (PhishDestroy) and is classified under social engineering by Google Safe Browsing.
Detection data from VirusTotal shows that 11 out of 93 security vendors have flagged this domain, suggesting moderate consensus on its malicious nature. Gridinsoft assigns a trust score of 0/100, further corroborating its high-risk status. The page title, 'Google,' aligns with the reported brand impersonation, though the exact content and mechanisms of the scam remain unconfirmed due to the domain's offline status. Nameservers are hosted on Cloudflare (brenna.ns.cloudflare.com and hassan.ns.cloudflare.com), a common practice among both legitimate and malicious domains.
Defenders should treat this domain as compromised and maintain its blocklist status. Monitoring for reactivation or similar domains registered through the same registrar (Dynadot LLC) is recommended. Given the crypto scam classification, organizations handling cryptocurrency transactions or Google-branded services should prioritize user education and endpoint protection to mitigate potential exposure. No additional infrastructure or kit details are available at this time.
Data Coverage
脅威対応 Pipeline
ブロックリストの確認範囲
監視対象の外部情報源 10 件 · 保存スナップショット 2026年8月12日
検出タイムライン
-
Cloudflare Radar
Cloudflare Radar スキャンを保存 · スキャンを開く
フォレンジックインテリジェンス
VirusTotalによる分析
このサイトによって何か影響を受けましたか?
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。
任意のドメインを確認する
保存されたブロックリスト、WHOIS、DNS、および公開スキャン証拠を使用した脅威分析
今すぐスキャンフィッシングを報告する
不審なドメインを当社の脅威データベースに報告してください — コミュニティを守りましょう
レポートリアルタイム脅威情報フィード
最近のフィッシングレポートと観察された可用性の変化
監視最新情報を入手し、安全を確保しましょう
リアルタイムの脅威を監視するか、誤検知だと思われる場合はこのリストに異議を申し立ててください