The claim-page pattern
A page announces an airdrop, asks you to connect, and then requests an approval or a permit signature to "verify eligibility" or "cover the claim". No legitimate claim requires permission over an unrelated token you already hold.
Some request a small payment to "activate" the claim. That payment is the entire scam, and nothing arrives afterwards.
Tokens sent to you as bait
An unknown token appears in your wallet showing a large notional value. Selling it requires visiting a site named in the token metadata, which is a drainer. The token exists purely to deliver you to that page.
Receiving it is harmless. Interacting with it is the attack.
What genuine airdrops look like
Announced through the project's own established channels, with a claim on its own verified domain. Eligibility is already determined by a published snapshot, so no checker needs permission over your tokens. Claiming costs gas and nothing else.
If you have to find out about it from a direct message, it is almost certainly not real.
Checking before you claim
Navigate to the project's site yourself rather than following a link. Confirm the claim contract address against the official announcement. Read the wallet prompt — a claim transaction should not include an approval for a token you already hold.
If anything does not line up, missing the airdrop is cheaper than the alternative.
FBT Swap never distributes tokens through direct messages and never asks you to connect a wallet to claim anything. It is a non-custodial interface with no token to give away, and it does not contact users first under any circumstances.