trump-meme[.]top
“Claim Your Share of the Arbitrum Ecosystem | Up to $25,000 for Active Wallets”
trump-meme.top — Контент недоступен (HTTP 502). Олицетворение бренда: Across; Тип мошенничества: Fake Airdrop. Сводка доказательств: VirusTotal 2/93 (alphaMountain.ai, Fortinet); PhishDestroy score 56/100.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis indicates that the domain trump-meme.top was registered on 2026-02-21 and is currently taken offline. When active, the site served a page titled "Claim Your Share of the Arbitrum Ecosystem | Up to $25,000 for Active Wallets," which matches the pattern of a fake airdrop scam targeting cryptocurrency users. The domain resolves to IP address 45.9.148.51, which is located in the Netherlands and belongs to ASN 49447 (Nice IT Services Group Inc.). An SSL certificate identified as R11 was present, suggesting the use of encrypted connections to lend credibility.
Reputation scoring from Gridinsoft assigned a trust score of 0 out of 100, indicating a malicious classification. VirusTotal analysis recorded detections by 2 of 93 security vendors, and the domain appears on one external security blocklist. It was also blocked by the PhishDestroy filtering service. The intelligence notes an impersonation label of "across," implying the campaign may be designed to lure victims across multiple brands, though no specific brand is enumerated in the available data.
Defenders should add both the domain and its hosting IP to deny and reputation lists, monitor for re‑registration or similar domains resolving to the same IP range, and enforce strict filtering of URLs containing the Arbitrum airdrop phrasing. User education campaigns should remind stakeholders that legitimate airdrops are announced only through official channels and that unsolicited offers of up to $25,000 are highly suspect. Ongoing telemetry should be collected to identify any resurgence of the campaign or related infrastructure, and any future observations of the domain should be reported to threat‑sharing platforms.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Криминалистическая аналитика
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание