graph[.]airdropsalert[.]app
“Google”
Зведення доказів
graph.airdropsalert.app is currently flagged for brand impersonation targeting Google. The site resolved to IP 142.250.185.132, which belongs to the AS15169 Google LLC network located in the United States. Registration information indicates the domain was provisioned through Cloudflare, Inc., but authoritative name server data could not be retrieved (NS_NOT_FOUND). The HTTP response lacked an SSL/TLS certificate, meaning the connection was unencrypted. The sole HTML element observed was the page title “Google”, matching the declared brand target and confirming the impersonation intent.
The domain was classified as a crypto‑scam, and Google Safe Browsing flagged it for social engineering. It appears on a single public blocklist, PhishDestroy, and VirusTotal recorded 16 detections out of 95 scanned engines. Gridinsoft assigned a trust score of 0/100, indicating a malicious reputation. The site has since been taken offline, but the infrastructure components—Cloudflare registration, Google‑owned IP range, and lack of TLS—remain observable.
Uncertainty remains around the underlying payload, hosting platform, and whether additional command‑and‑control infrastructure was used, as no further content or code analysis is available. Defenders should immediately block the domain at perimeter and DNS layers, add it to internal threat intelligence feeds, monitor for re‑registration or similar sub‑domains, and consider sinkholing the associated IP range if feasible. Continuous observation of Cloudflare‑registered domains that resolve to Google‑owned IPs and present brand‑related titles is recommended to catch future impersonation attempts. The combination of brand‑targeted page title, high‑confidence IP ownership, multiple vendor detections, and low trust score supports a high‑risk assessment.
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
Хронологія виявлення
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Registration: airdropsalert.app
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain airdropsalert.app behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Криміналістичні дані
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога