me-foundation[.]top
“Claim Your Share of the Arbitrum Ecosystem | Up to $25,000 for Active Wallets”
me-foundation.top — Контент недоступен (HTTP 502). Олицетворение бренда: Across; Тип мошенничества: Fake Airdrop. Сводка доказательств: VirusTotal 2/93 (ChainPatrol, Seclookup); 1 external blocklist match (ScamSniffer); PhishDestroy score 58/100.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of the domain me-foundation.top indicates a recent fake‑airdrop campaign targeting users of the Across brand. The domain was registered on 21 February 2026 and currently resolves to the IPv4 address 45.9.148.51, which is announced as part of AS49447 operated by Nice IT Services Group Inc. in the Netherlands. The web server presented an SSL certificate identified as “R11”, and a Gridinsoft trust score of 0 out of 100, reflecting a very low credibility rating. The page title retrieved from the site reads “Claim Your Share of the Arbitrum Ecosystem | Up to $25,000 for Active Wallets”, which aligns with the “Fake Airdrop” scam type listed in the intelligence.
The site impersonates the Across brand, although no direct visual evidence is available. The domain appears on two reputable blocklists—PhishDestroy and ScamSniffer—and two of ninety‑three VirusTotal scanners have flagged it as malicious. The overall risk rating is elevated, and the site is presently taken offline, leaving its operational status uncertain. Defenders should add me-foundation.top to internal URL filtering and host‑based deny lists, block outbound connections to the hosting IP 45.9.148.51, and monitor the underlying ASN for additional suspicious registrations.
Continuous observation of newly created domains that resolve to the same ASN or exhibit similar SSL characteristics is advisable, as threat actors often reuse infrastructure. Because the site is already listed on multiple blocklists, coordination with external threat‑intelligence feeds can accelerate remediation. Until the domain is definitively taken down, network‑level enforcement remains the most reliable mitigation.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание