ssolsscansnipe[.]xyz
“SOL Sniper - AI Trading Bot for Fast”
ssolsscansnipe.xyz — المحتوى غير متوفر (HTTP 502). نوع الاحتيال: Crypto Drainer. ملخص الأدلة: VirusTotal 6/91 (ADMINUSLabs, alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 70/100. مسجّل النطاق: PDR.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain, ssolsscansnipe.xyz, poses as a legitimate SOL (Solana) AI-powered trading bot platform but operates as a crypto drainer phishing site. Visitors are tricked into connecting their cryptocurrency wallets under the guise of accessing advanced trading tools, only to have their funds silently siphoned through malicious smart contracts. The site specifically targets users of decentralized finance (DeFi) platforms, exploiting the growing popularity of AI-driven trading bots in the crypto space. Infrastructure analysis reveals the use of modern frontend frameworks, which may lend an air of legitimacy to unsuspecting users, while the actual threat lies in the backend wallet interaction scripts designed to drain assets upon connection. Analysis indicates this domain was registered on December 17, 2025, through PDR Ltd. d/b/a PublicDomainRegistry.com, a registrar frequently associated with high-risk domains. At the time of assessment, 6 out of 95 security vendors on VirusTotal flagged the domain as malicious, with detections spanning phishing, fraud, and crypto-related threats. The domain appears on three security blocklists and is actively blocked by wallet security tools, including MetaMask's built-in protection systems. It resolves to the IP address 188.114.96.3, which is part of a network range known for hosting transient phishing infrastructure. The site's technology stack includes Node.js, Bootstrap, Vue.js, and Nuxt.js, suggesting a sophisticated frontend designed to mimic legitimate trading platforms, while Cloudflare is used to obscure the true hosting origin and evade takedown efforts. If you visited ssolsscansnipe.xyz and connected a wallet, immediate action is required to mitigate potential losses. First, revoke any smart contract approvals granted to the site using a trusted blockchain explorer or wallet security tool. Next, transfer remaining assets to a new, secure wallet address that has never interacted with the malicious domain. Monitor all connected accounts for unauthorized transactions and enable enhanced security features such as transaction simulation and spending limits. Users should also report the incident to their wallet provider and relevant blockchain security teams to contribute to broader threat intelligence efforts. Given the elevated risk level and the domain's current offline status, remain vigilant for similar scams, as threat actors often re-deploy infrastructure under new domains.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات · 9 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org ثقة 100٪Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com ثقة 100٪Vue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.
vuejs.org ثقة 100٪jQuery UI is a collection of GUI widgets, animated visual effects, and themes implemented with jQuery, Cascading Style Sheets, and HTML.
jqueryui.com ثقة 100٪jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com ثقة 100٪Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com ثقة 100٪Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com ثقة 100٪HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org ثقة 100٪تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of ssolsscansnipe.xyz · checked Jun 26, 2026
الأدلة والتقارير الخارجية
PD-20260601-99EB73 Recipient: abuse@publicdomainregistry.com هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب