magma[.]hub-airdropalert[.]cfd
“Google”
magma.hub-airdropalert.cfd — 内容不可用. 品牌冒充:Google; 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 9/95 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, CyRadar, Forcepoint ThreatSeeker); PhishDestroy score 77/100. 注册商: Dynadot.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Based on the available data, this site presents a high-confidence threat. The page title is "Google," and it impersonates the brand "gmail" in the context of a cryptocurrency scam. The specific threat posed is a phishing or credential-harvesting attack designed to trick users into divulging their Google account credentials under the pretense of a cryptocurrency-related airdrop or alert.
Technical evidence confirms the malicious nature of the domain. VirusTotal shows 9 detections out of 95 vendors. The domain was registered on 2025-11-09 with registrar Dynadot LLC. It has no SSL certificate and is hosted on IP address 142.250.176.196, which is associated with US-based AS15169 Google LLC. The domain is flagged by ADMINUSLabs, ChainPatrol, alphaMountain.ai, CyRadar, and Forcepoint ThreatSeeker, and appears on 1 blocklist.
The site is currently DOWN/OFFLINE. The DOM risk score is 10, indicating the highest possible risk level. The combination of a very recent creation date, lack of SSL, high detection rate by security vendors, and impersonation of a trusted brand for a cryptocurrency scam classifies this as a malicious and high-risk domain.
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
SHORTDOT 域名区 · 公开证据
.cfd
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
ICANN OVERSIGHT
Registration: hub-airdropalert.cfd
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For the registrable domain hub-airdropalert.cfd behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。