strk[.]airdropalert[.]us
“Google”
strk.airdropalert.us — 内容不可用 (HTTP 502). 品牌冒充:Google; 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 11/93 (ChainPatrol, alphaMountain.ai, BitDefender, CRDF, CyRadar); PhishDestroy score 83/100. 注册商: Dynadot.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain strk.airdropalert.us was registered on October 19, 2025 through Dynadot LLC and is currently reported as offline. It resolves to the IP address 142.251.111.104, which belongs to AS15169 Google LLC and is geolocated in the United States. The domain’s authoritative nameservers are brenna.ns.cloudflare.com and hassan.ns.cloudflare.com, indicating the use of Cloudflare’s DNS infrastructure. No SSL certificate is present, meaning the site does not support HTTPS and would be served over plain HTTP if accessed.
The page title returned during the limited observation was “Google,” matching the declared brand target of Google and confirming the domain’s intent to impersonate that brand. The site is classified as a crypto‑scam, although the specific payload or transaction mechanism was not captured before the takedown. Reputation scoring from Gridinsoft assigns a trust score of 0 out of 100, reflecting a high likelihood of malicious activity.
The domain appears on one public blocklist, PhishDestroy, and has been flagged by 11 of 93 security vendors on VirusTotal, indicating that multiple detection engines have identified it as malicious. Given the combination of brand impersonation, lack of TLS, low trust score, and vendor detections, defenders should add strk.airdropalert.us to network and DNS blocklists, monitor for any DNS queries to the associated IP address, and consider the IP as potentially abused despite its legitimate ownership by Google. Continuous observation of Cloudflare name server patterns and similar “airdropalert” sub‑domains is advised, as threat actors may reuse this infrastructure for future campaigns.
威胁响应 Pipeline
公共封禁名单状态
取证情报
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。