WebVetted

twitter Scam Encyclopedia

2 Common Twitter Scams & How To Avoid Them

Every pattern below is under active review by WebVetted analysts. Use this master playbook to compare screenshots, chat transcripts, or listings before you pay anyone claiming to operate on twitter.

social media Scam

X (Twitter) “Verified” Badge Abuse Scam

Bad actors buy verified badges and mimic brands to push phishing links or pump-and-dumps. WebVetted captures name changes, handle history, and outbound URLs so you can escalate quickly.

Red flags

  • Account display name matches your brand but handle does not.
  • Verified badge was purchased recently and location is hidden.
  • Tweets link to wallet drainers or fake support forms.

How to Respond

  1. Analyze the handle via the X Checker for previous names and linked domains.
  2. File an impersonation report with X and include your WebVetted evidence packet.
  3. Alert customers on official channels and share the real support links.

📌 Case study

A crypto scammer bought verification and mirrored a DeFi brand, funneling users into a drainer contract. Another pretended to be a major airline during a storm and redirected travelers to a WhatsApp booking line.

social media Scam

X (Twitter) Impersonation Airdrop Scam

Scammers clone official project accounts on X and post airdrop links that drain wallets. WebVetted reviews account age, follower overlap, and linked smart contracts so you can prove the account is fake.

Red flags

  • Username swaps l for I or adds underscores to mimic the brand.
  • Replies filled with identical “thanks for the airdrop” comments from new accounts.
  • Airdrop link points to a non-official domain or requires seed phrases.

How to Respond

  1. Feed the account into the X Checker to examine verification status and follower quality.
  2. Compare the airdrop domain to URLs announced on the project’s official channels.
  3. Report the account through X’s impersonation flow and warn your community Discord.

📌 Case study

We shut down a fake Optimism account that replied to every governance tweet with an airdrop site. Another impersonator copied a hardware wallet brand and pushed a zip file disguised as a firmware update.

Verification steps

Put the playbook to work

How to Check If an X (Twitter) Account Is a Scam

Before you trust a badge, a brand name, or an airdrop link on X, corroborate more than one signal. A blue check alone does not confirm identity, and a familiar-looking handle can still be a clone.

  1. 1 Pull the account's history: name changes, handle changes, and account age often expose a recent takeover or clone that a glance at the profile picture will not.
  2. 2 Trace every outbound link before clicking, especially airdrop, wallet-connect, or "support" links — these are where the actual theft happens.
  3. 3 Compare the account against the brand or person's other verified channels (official website, other confirmed socials) rather than trusting the platform badge in isolation.
  4. 4 Run the handle through the X / Twitter Profile Checker to pull verification status, handle history, and linked domains into one view, then check any linked site with the Website Safety Checker.

No single signal here is proof by itself. A clean scan means nothing suspicious surfaced in that pass, not a guarantee the account is legitimate — corroborating a few signals together is what actually reduces your risk.

Before you take action

Commonly asked questions about Twitter Scams

Is it safe to trust the verified badge on X?

Not on its own. Verified badges on X can be purchased and do not confirm a brand or person's real identity. Treat the badge as one input, not a verdict, and check the account's handle history and linked domains before you trust it.

How can I tell if an X account is impersonating a real project or brand?

Look for handle spelling that swaps letters or adds underscores, a recently created or recently renamed account, and replies filled with near-identical "thanks" comments from new accounts. Cross-check any linked website or wallet-connect page separately.

What should I do if I already clicked an airdrop link on X?

Do not enter a seed phrase or approve unlimited token spend. If you connected a wallet, revoke approvals through a trusted on-chain explorer, move remaining assets to a new wallet, and report the account to X's impersonation flow.

Need evidence for a bank or police report?

Generate a full entity dossier plus user-submitted reviews and then share the PDF with law enforcement or platform trust teams.