Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@internet.gmo.
The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
airdrop-orbiter[.]xyz
“airdrop-orbiter.xyz”
airdrop-orbiter.xyz — 未验证. 诈骗类型:Fake Airdrop. 证据摘要: VirusTotal 10/91 (alphaMountain.ai, BitDefender, CRDF, Forcepoint ThreatSeeker, Fortinet); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 80/100. 注册商: GMO Internet.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Airdrop-orbiter.xyz is an active domain associated with an airdrop scam. This domain is flagged by 2 out of 91 vendors on VirusTotal, indicating a moderate level of detection. It is also listed on three public blocklists, including PhishDestroy, MetaMask, and SEAL, which highlights its malicious nature. The domain is registered with GMO Internet, Inc. and is hosted on an Amazon IP address in the United States.
The domain impersonates a legitimate airdrop operation, aiming to deceive users into participating in fraudulent activities. The SSL certificate is issued by GoDaddy.com, which might lend a false sense of security to unsuspecting victims. The platform risk score for this domain is notably high at 88 out of 100, suggesting a significant threat level.
Despite its recent creation on June 17, 2026, airdrop-orbiter.xyz has already been detected by PhishDestroy as of June 19, 2026. This quick detection underscores the efficiency of PhishDestroy's threat intelligence pipeline, which captures threats during the critical window before they are widely recognized by antivirus vendors. The domain's abuse score is relatively low at 23 out of 100, possibly due to its short lifespan and recent emergence in the threat landscape.
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
所用技术 · 1 identified
Akamai is global content delivery network (CDN) services provider for media and software delivery, and cloud security solutions.
akamai.com 置信度 100%VirusTotal 分析
证据与外部报告
PD-20260619-413525 Recipient: abuse@internet.gmo 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。