airdrop[.]0g-foundatlon[.]icu
“Nur einen Moment…”
airdrop.0g-foundatlon.icu — Контент недоступен. Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 1/95 (Forcepoint ThreatSeeker); PhishDestroy score 55/100. Регистратор: PDR.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain airdrop.0g-foundatlon.icu is identified as a crypto drainer phishing site, posing a significant threat to users involved in cryptocurrency transactions. It does not impersonate any specific brand and is currently offline. The domain is not safe for users as it was designed to drain cryptocurrency assets from unsuspecting victims.
Technical analysis of airdrop.0g-foundatlon.icu reveals that it was detected by 1 of 95 security vendors on VirusTotal, specifically by Forcepoint ThreatSeeker. The domain was registered through PDR Ltd. d/b/a PublicDomainRegistry.com on September 22, 2025, and resolves to the IP address 172.67.161.90, located in the US under AS13335 Cloudflare, Inc. It appears on one security blocklist, PhishDestroy, and has a Gridinsoft trust score of 0 out of 100. The domain lacks an SSL certificate, and its page title is 'Nur einen Moment…'.
To protect against the threats posed by a crypto drainer like airdrop.0g-foundatlon.icu, users should immediately revoke any token approvals granted to suspicious addresses and transfer their cryptocurrency assets to a new wallet. Additionally, users should remain vigilant for any unauthorized transactions. If affected, individuals should report the incident to relevant authorities or cybersecurity platforms to help mitigate further risks.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ЗОНА SHORTDOT · ПУБЛИЧНЫЕ ДОКАЗАТЕЛЬСТВА
.icu
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
ICANN OVERSIGHT
Registration: 0g-foundatlon.icu
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain 0g-foundatlon.icu behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Криминалистическая аналитика
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание