The domain solairdrops-eb.netlify.app is currently active and resolves to the IP address 63.176.8.218. Infrastructure analysis indicates that the host is provided by Netlify, as the registration information lists Netlify as the registrar and the domain is served from Netlify’s content‑delivery platform. The domain name does not resolve to a conventional authoritative nameserver; the nameserver lookup returned NS_NOT_FOUND, which is consistent with Netlify’s use of wildcard DNS for hosted sites. The site has been submitted to VirusTotal and was examined by 91 independent scanning engines; none of the engines reported a detection at the time of analysis.
While the absence of detections does not constitute a safety guarantee, it demonstrates that the payload or page content has not yet been identified by the examined vendors. The domain is listed on a single security blocklist and has been explicitly blocked by the PhishDestroy filtering service, suggesting that at least one threat‑intelligence provider has observed malicious activity associated with the host. The threat classification supplied for the domain is a "crypto drainer," indicating that the site is likely intended to solicit cryptocurrency transfers from unsuspecting users.
No additional contextual data such as page title, SSL certificate details, or HTTP response codes were available for further verification. Defenders should consider adding the domain to URL filtering policies, monitoring outbound connections to the associated IP address, and employing network‑level controls to prevent unauthorized cryptocurrency transactions. Continuous re‑evaluation is recommended, as the domain remains active and may evolve its tactics or infrastructure.