Domain Security Reports

Search our database of flagged domains. Check if a website is a scam, phishing, or legitimate.

0
Total Tracked
0
Detected
0
Content Alive
0
Content Dead
0
VT Pending
Solana Drainer
CRITICAL THREAT

Understanding and Combating Solana Drainer Threats

Solana Drainer threats pose a critical risk with 1,323 domains tracked and 184 currently active. PhishDestroy insights reveal top TLDs and registrars involved.

2,090
Domains Detected
CRITICAL
Threat Level

How This Attack Works

Solana Drainer threats exploit vulnerabilities in Solana's crypto ecosystem to steal funds. Understanding their operation is crucial for prevention.

STEP 1
Target Identification
Attackers identify potential victims through phishing emails and fake websites.
STEP 2
Phishing Execution
Victims are lured to malicious sites mimicking legitimate platforms, like phantomairdrop.com.
STEP 3
Credential Harvesting
Once on the fake site, victims input sensitive information, believing it to be secure.
STEP 4
Fund Drainage
Attackers utilize harvested credentials to access wallets and drain funds via illicit transactions.

Technical Analysis

Solana Drainer attacks leverage phishing techniques to exploit the Solana blockchain. Attackers often create copycat websites using top TLDs such as .com, .xyz, and .cc, with domains hosted by registrars like Cloudflare, Inc. and PDR Ltd. These sites employ deceptive JavaScript and HTML code to mimic legitimate interfaces, tricking users into entering their private keys or seed phrases. Once credentials are obtained, attackers interact with the Solana blockchain via RPC calls to execute unauthorized transactions. The usage of smart contract functions like `transfer` and `approve` allows attackers to swiftly move funds out of victims' accounts. The infrastructure often involves a network of proxy servers to obfuscate the origin of the attack and make tracing back to the perpetrators difficult.

Real Cases

Phantom Wallet Breach (2023)
$2 million stolen
Attackers created a fraudulent Phantom wallet site to harvest user credentials, resulting in a $2 million theft.
SolUnion Scam (2024)
$1.5 million stolen
Using the domain phantom.solunion.cc, scammers executed a sophisticated phishing attack, stealing $1.5 million in SOL.
VaultBenefits Exploit (2024)
$3 million stolen
A fake airdrop campaign via vaultbenefits.net led to credential compromise and a subsequent $3 million drain.

How to Detect

Unsolicited emails or messages offering free SOL or airdrops
Websites with slight misspellings of legitimate names
Requests for private keys or seed phrases
Suspicious URL structures or unfamiliar TLDs like .xyz or .cc
Lack of HTTPS security on sites claiming to be secure

How to Protect Yourself

1 Verify URLs carefully before interacting
2 Enable multi-factor authentication on your wallet
3 Never share your private key or seed phrase
4 Regularly check transaction histories for unauthorized activity
5 Use official wallet apps and browser extensions

Frequently Asked Questions

What is Solana Drainer?
Solana Drainer refers to phishing attacks targeting Solana wallet users to steal funds by tricking them into revealing sensitive credentials.
How much money has been stolen through Solana Drainer?
Millions have been lost, with notable cases like the Phantom Wallet Breach resulting in a $2 million loss.
How do I protect myself from Solana Drainer?
Stay vigilant by verifying URLs, using multi-factor authentication, and never sharing your private keys.
What should I do if I'm a victim of Solana Drainer?
Report the incident to authorities and your wallet provider immediately, and attempt to trace unauthorized transactions.
Data sourced from PhishDestroy threat intelligence database — 2,090 domains tracked for this threat type
Solana Drainer — Threat Intelligence Smart Contract High Threat
solana.com (official)
2,090
Domains
732
Alive
1,301
Taken Down
5.2
Avg VT
35%
Alive Rate
95.3%
Detected
Since Mar 2024 842 domains with VT ≥ 5
Solana Drainer 2,090 domains
ab.sol-lib.cc
21 VTTaken DownPhantom Wallet
event-coinbase.fun
20 VTLivecoinbase
phantomairdrop.com
20 VTPhantom
aa.solcenter.cc
19 VTTaken Downacross
claimmyreward.live
19 VTfoundation
jup-v2.com
19 VTTaken DownJupiter
phantom.solunion.cc
19 VTTaken DownPhantom
raydiumsolutions.xyz
19 VTLiveceler
seeker-mobile.net
19 VTSolana
solanasolutions.fun
19 VTTaken DownSolana
coinmultiwallet.com
18 VTLivediscord
debank.com-en-us.network
18 VTTaken DownEthereum
go-bfscheck.live
18 VTLiveceler
phanton.pro
18 VTTaken Downacross
pp.solcenter.cc
18 VTTaken DownPhantom Wallet
ppp.solshelter.cc
18 VTLiveacross
raydium-solana.network
18 VTSolana
sol-reward.icu
18 VTTaken Downacross
vaultbenefits.net
18 VTLivesolana
web-phantoms.app
18 VTLivePhantom
app-solstice.com
17 VTTaken Down
jupbox.net
17 VTLivejupiter
phan.solcenter.cc
17 VTTaken DownPhantom Wallet
phantomvoted.com
17 VTTaken DownPhantom Wallet
receipt526823.rest
17 VTTaken DownPhantom
sol-incinerator.tax
17 VTLivesolana
solflaredesk.com
17 VTTaken DownSolflare
sols-drops.com
17 VTTaken DownSolana
abb.soluniverse.cc
16 VTacross
airtm.solunion.cc
16 VTTaken DownSolana
alpha-solana.com
16 VTTaken DownSolana
app.web-phantom.to
16 VTLivePhantom
blocksmartwallet.live
16 VTLiveJupiter
dappsolchain.com
16 VTLiveceler
derpo.icu
16 VTTaken Downacross
financialnetwork.live
16 VTTaken DownRaydium
jup-yt.live
16 VTTaken DownJupiter
jupiterchecker.us
16 VTLivejupiter
jupiterdis.solhq.cc
16 VTTaken DownJupiter
jupjhot.icu
16 VTLiveacross
pancakeswapsfi.org
16 VTLivePancakeSwap
phanbust.live
16 VTLivephantom
planet.solhq.cc
16 VTTaken DownSolana
refundyoursol.world
16 VTLivebinance
return.solcenter.cc
16 VTTaken DownSolana
solgoblin.world
16 VTTaken Downacross
spin.solgalaxy.cc
16 VTTaken DownSolana
visionfundsfindept.com
16 VTLive
wowcoin.bet
16 VTLiveacross
zypha.xyz
16 VTLive1inch
based.soldex.trade
15 VTLiverevolut
blockchain-network.live
15 VTTaken DownBlockchain.com
bullishcoin.solhq.cc
15 VTTaken DownSolana
coin.solgalaxy.cc
15 VTTaken Down
cooldece.com
15 VTTaken DownPhantom
dappportal.live
15 VTTaken DownSolana
dappsol.live
15 VTTaken DownRaydium
events-samara.fun
15 VTTaken Downsolana
events-whalefloki.fun
15 VTTaken Downrevolut
jup-promo.org
15 VTTaken Downjupiter
jupiter.ag-live.info
15 VTLiveJupiter
jupiter.sol-alliance.cc
15 VTJupiter
jupiter.solgalaxy.icu
15 VTLiveJupiter
juppromotion.com
15 VTLivejupiter
luna.solhq.cc
15 VTTaken DownSolana
pancakeswap-dex.com
15 VTTaken DownPancakeSwap
pbantom.com
15 VTLiveinstagram
phantomgift.world
15 VTLivePhantom
pixelguild-game.run
15 VTTaken DownPump.fun
raydiumsofficialreward.xyz
15 VTLivephantom
register-grandma.fun
15 VTLiveminecraft
rpcresolvernode.com
15 VTTaken Down
russiamothertest.icu
15 VTTaken DownJupiter
sol-fast.lol
15 VTTaken DownSolana
solana-2025.today
15 VTLiveSolana
solclaim.cloud
15 VTLiveacross
solmultichain.com
15 VTTaken DownRaydium
solquantlab.top
15 VTLiveSolana
succesadevsolanaclu.pages.dev
15 VTLiveSolana
texitcointxc.org
15 VTTaken Down1inch
trumpsnew.life
15 VTTaken DownSolana
trumpsolana.org
15 VTTaken DownSolana
webresolvvsol.xyz
15 VTTaken DownSolana
2pigger.soldex.trade
14 VTTaken Downsolana
air.sol-union.cc
14 VTLivesolana
air.solhq.cc
14 VTTaken DownSolana
amlbotchecks.com
14 VTTaken DownAMLBot
authenticatedlive.xyz
14 VTTaken Downsolana
bifrostwallss.pages.dev
14 VTTaken Down
bybitrewards.digital
14 VTLiveBybit
claim-reward0.pages.dev
14 VTLiveSolana
fartcoin-promo.com
14 VTTaken DownPump.fun
flip.sol-galaxy.cc
14 VTTaken DownSolana
fortunawhee.sol-galaxy.cc
14 VTTaken Downsolana
geraslot.world
14 VTSolana
hypernetwork.live
14 VTLivefoundation
join-hajimi.xyz
14 VTLiveacross
join-xmas.xyz
14 VTLiverevolut
jup-agf.world
14 VTTaken DownJupiter
jup-newera.live
14 VTTaken Downjupiter
1 2 3 4 Next » Page 1 of 21