dbr[.]airdropsalert[.]us
“Google”
证据摘要
Analysis date July 23 2026. The domain dbr.airdropsalert.us was registered through Dynadot LLC on October 18 2025. It resolves to IP 142.251.41.164, which belongs to AS15169 Google LLC located in the United States. No SSL certificate is presented, and the site currently returns an offline HTTP status after being taken down. The page title returned from the host is "Google", matching the declared brand target of Google, confirming a brand‑impersonation attempt.
The domain is listed on a single security blocklist and is blocked by the PhishDestroy service. Google Safe Browsing has flagged the domain for social engineering, and VirusTotal reports that 12 of 93 scanning engines have marked it as malicious. Gridinsoft assigns a trust score of 0 out of 100, and the nameservers are brenna.ns.cloudflare.com and hassan.ns.cloudflare.com, indicating use of Cloudflare DNS. The intelligence classifies the operation as a crypto scam, although no further details about the payload or monetary demands are available.
Evidence suggests the infrastructure was deliberately pointed at a legitimate Google IP address, likely to increase credibility. Uncertainty remains regarding the actual content served before takedown, as no page capture is provided. Defenders should add dbr.airdropsalert.us to blocklists, enforce DNS sinkholing, monitor for future re‑registrations, and ensure that any email or web traffic claiming to originate from Google and referencing this domain is discarded. Continuous monitoring of the associated IP 142.251.41.164 for anomalous traffic is also advised.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月13日
检测时间线
-
Cloudflare Radar
已存储 Cloudflare Radar 扫描 · 打开扫描
取证情报
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控