gradient-airdrop[.]trade
“Cierpliwości...”
Сводка доказательств
This domain, gradient-airdrop.trade, is confirmed as an active brand impersonation scam designed to deceive users into participating in fraudulent airdrop schemes. Analysis indicates the site specifically targets cryptocurrency users by mimicking legitimate airdrop promotions, a tactic commonly associated with crypto drainers and credential harvesting. The domain remains operational as of the latest verification, posing an ongoing threat to unsuspecting victims. Infrastructure analysis reveals the domain was registered on June 30, 2025, through PDR Ltd. d/b/a PublicDomainRegistry.com. It resolves to the IP address 104.21.46.6, hosted on Cloudflare's network (AS13335). Security vendors on VirusTotal have flagged the domain, with 2 out of 95 engines detecting malicious activity. The site is currently listed on four security blocklists, including entries from PhishDestroy, Polkadot, Enkrypt, and Codeesura. Notably, the domain lacks an SSL certificate, and its page title, "Cierpliwości...," suggests an attempt to appear legitimate while awaiting user interaction. The domain remains active and continues to pose a high risk to users. Organizations and individuals are advised to block the domain and its associated IP address (104.21.46.6) at the network level. Users should be cautioned against interacting with unsolicited airdrop promotions, particularly those hosted on newly registered domains or lacking proper encryption. Monitoring for similar impersonation patterns, such as domains containing "airdrop" or variations of legitimate project names, is recommended for proactive threat mitigation.
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 12.08.2026
7 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание