PhishDestroy first observed solbull.cc on Jul 30, 2026. Stored content metadata identifies ["solana"] as the apparent target. The captured page title is “SOLBULL”. Page analysis recorded additional brand references to Solana. Stored page analysis classifies the content as credential phishing. Current evidence score: 80/100 (critical).
Positive findings are stored from 3 sources: VirusTotal, MetaMask, and SEAL. VirusTotal recorded 6 detections among 91 engines: alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Fortinet, Gridinsoft, SOCRadar on Aug 7, 2026 at 02:12 UTC. MetaMask and SEAL listed the hostname in the separate external-blocklist snapshot on Aug 8, 2026 at 14:20 UTC. Non-positive and contextual checks: Google Safe Browsing returned no flag on Jul 30, 2026 at 04:31 UTC. URLScan completed without a malicious verdict (score 0) on Aug 1, 2026 at 03:30 UTC.
HTTP 200 was recorded on Aug 8, 2026 at 10:25 UTC. Registration records for the domain list NameSilo, LLC as the registrar and Jul 27, 2026 as the creation date. Registration preceded first observation by 2 days. At collection time, the hostname resolved to 188.114.96.3 on AS13335 (Cloudflare, Inc.). The IP and ASN identify shared Cloudflare edge infrastructure; the origin server is not established by this address. DOM analysis on Jul 30, 2026 at 06:20 UTC returned 80/100. The evidence archive retains 2 visual captures from PhishDestroy and URLScan. TLS metadata lists Google Trust Services as the certificate issuer with validity through Oct 25, 2026; checked Jul 30, 2026 at 10:02 UTC.
The content indicators and 3 positive source findings support the current ["solana"]-themed credential phishing classification.