dolomite[.]airdropalert[.]us
“Google”
dolomite.airdropalert.us — Контент недоступен. Олицетворение бренда: Google; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 11/93 (ChainPatrol, alphaMountain.ai, BitDefender, CRDF, CyRadar); Google Safe Browsing flagged; PhishDestroy score 83/100. Регистратор: Dynadot.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
On July 24, 2026 analysts observed that the domain dolomite.airdropalert.us is hosted without TLS and returns no SSL certificate. The domain was registered on October 19, 2025 through Dynadot LLC and is served by Cloudflare name servers brenna.ns.cloudflare.com and hassan.ns.cloudflare.com. DNS resolution points to IP 192.178.155.105, which belongs to AS15169 Google LLC and is geolocated in the United States. Despite the legitimate‑looking IP ownership, the site is flagged by Google Safe Browsing for social engineering, appears on a security blocklist, and is listed by PhishDestroy. The page title reported by crawlers is "Google", matching the declared impersonation of the Google brand.
Gridinsoft assigned a trust score of 0 out of 100, indicating extreme suspicion. VirusTotal scans recorded detections from 11 of 93 security vendors, reinforcing the malicious classification. The site is identified as a crypto‑scam, though the exact payload or campaign details have not been released. The domain’s current HTTP status is offline, but historical evidence indicates that it was active long enough to be harvested by multiple detection services.
Uncertainty remains regarding the specific phishing kit or infrastructure used beyond the Cloudflare front‑end and the Google‑owned IP address. Defenders should continue to block the domain at DNS and proxy layers, monitor for any re‑activation, and add the IP address to suspicious‑host lists. Because the domain leverages a reputable IP range, security teams should verify that the IP is not being abused elsewhere and consider tightening egress controls for traffic destined to AS15169. Ongoing observation of the associated nameservers and registrar may reveal future campaigns that reuse the same registration patterns.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Криминалистическая аналитика
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание