Domain Security Reports

Search our database of flagged domains. Check if a website is a scam, phishing, or legitimate.

0
Total Tracked
0
Detected
0
Content Alive
0
Content Dead
0
VT Pending
Solana Drainer
CRITICAL THREAT

Understanding and Combating Solana Drainer Threats

Solana Drainer threats pose a critical risk with 1,323 domains tracked and 184 currently active. PhishDestroy insights reveal top TLDs and registrars involved.

2,129
Domains Detected
CRITICAL
Threat Level

How This Attack Works

Solana Drainer threats exploit vulnerabilities in Solana's crypto ecosystem to steal funds. Understanding their operation is crucial for prevention.

STEP 1
Target Identification
Attackers identify potential victims through phishing emails and fake websites.
STEP 2
Phishing Execution
Victims are lured to malicious sites mimicking legitimate platforms, like phantomairdrop.com.
STEP 3
Credential Harvesting
Once on the fake site, victims input sensitive information, believing it to be secure.
STEP 4
Fund Drainage
Attackers utilize harvested credentials to access wallets and drain funds via illicit transactions.

Technical Analysis

Solana Drainer attacks leverage phishing techniques to exploit the Solana blockchain. Attackers often create copycat websites using top TLDs such as .com, .xyz, and .cc, with domains hosted by registrars like Cloudflare, Inc. and PDR Ltd. These sites employ deceptive JavaScript and HTML code to mimic legitimate interfaces, tricking users into entering their private keys or seed phrases. Once credentials are obtained, attackers interact with the Solana blockchain via RPC calls to execute unauthorized transactions. The usage of smart contract functions like `transfer` and `approve` allows attackers to swiftly move funds out of victims' accounts. The infrastructure often involves a network of proxy servers to obfuscate the origin of the attack and make tracing back to the perpetrators difficult.

Real Cases

Phantom Wallet Breach (2023)
$2 million stolen
Attackers created a fraudulent Phantom wallet site to harvest user credentials, resulting in a $2 million theft.
SolUnion Scam (2024)
$1.5 million stolen
Using the domain phantom.solunion.cc, scammers executed a sophisticated phishing attack, stealing $1.5 million in SOL.
VaultBenefits Exploit (2024)
$3 million stolen
A fake airdrop campaign via vaultbenefits.net led to credential compromise and a subsequent $3 million drain.

How to Detect

Unsolicited emails or messages offering free SOL or airdrops
Websites with slight misspellings of legitimate names
Requests for private keys or seed phrases
Suspicious URL structures or unfamiliar TLDs like .xyz or .cc
Lack of HTTPS security on sites claiming to be secure

How to Protect Yourself

1 Verify URLs carefully before interacting
2 Enable multi-factor authentication on your wallet
3 Never share your private key or seed phrase
4 Regularly check transaction histories for unauthorized activity
5 Use official wallet apps and browser extensions

Frequently Asked Questions

What is Solana Drainer?
Solana Drainer refers to phishing attacks targeting Solana wallet users to steal funds by tricking them into revealing sensitive credentials.
How much money has been stolen through Solana Drainer?
Millions have been lost, with notable cases like the Phantom Wallet Breach resulting in a $2 million loss.
How do I protect myself from Solana Drainer?
Stay vigilant by verifying URLs, using multi-factor authentication, and never sharing your private keys.
What should I do if I'm a victim of Solana Drainer?
Report the incident to authorities and your wallet provider immediately, and attempt to trace unauthorized transactions.
Data sourced from PhishDestroy threat intelligence database — 2,129 domains tracked for this threat type
Solana Drainer — Threat Intelligence Smart Contract High Threat
solana.com (official)
2,129
Domains
727
Alive
1,338
Taken Down
5.2
Avg VT
34.1%
Alive Rate
94.9%
Detected
Since Mar 2024 853 domains with VT ≥ 5
Solana Drainer 2,129 domains
jup-newera.live
14 VTTaken Downjupiter
jup.cash
14 VTTaken Downjupiter
jupairdrop.onspace.build
14 VTTaken DownAirdrop Scam
onecore.world
14 VTTaken Downfoundation
panducoin.com
14 VTTaken DownCoinbase
penguinsgive.com
14 VTTaken Downsolana
pepeheimer-claim.com
14 VTTaken DownSolana
phantomgame339.top
14 VTLivePhantom
q111.solcenter.cc
14 VTTaken DownSolana
raydium-concentrated.world
14 VTceler
rectifywallet.click
14 VT
sol-incineratr.com
14 VTTaken DownSolana
sol-inclnerator.net
14 VTLivesolana
sol.sol-planet.cc
14 VTTaken Downjupiter
solflarewebwallet.com
14 VTTaken DownSolflare
solrefixcredit.world
14 VTLivesolana
swiftsoldapp.live
14 VTLivediscord
trumpclaim.sol-node.cc
14 VTTaken DownSolana
vote-moonshots.info
14 VTTaken Downceler
voucher.solhq.cc
14 VTTaken Downfoundation
walletappsync.firebaseapp.com
14 VTTaken Down
ybhww.cc
14 VTTaken DownSolana
32113.one
13 VTTaken Down
38010.lgbt
13 VTTaken DownSolana
53140.tax
13 VTTaken DownSolana
58035.tax
13 VTTaken DownSolana
airdropclaim-monad.xyz
13 VTLiveSolana
claimsolana.world
13 VTTaken DownSolana
cryptorecoverysystem.com
13 VTTaken Down
hyperfound.org
13 VTTaken DownPhantom
jitofund.xyz
13 VTLiveacross
jup-new.live
13 VTTaken Downjupiter
jupairdrop.onspace.app
13 VTTaken DownSolana
jupiter-bot.lol
13 VTTaken DownJupiter
jupiter.ag-us.live
13 VTLiveJupiter
lawalex.cc
13 VTPhantom Wallet
lunanew.solhq.cc
13 VTTaken DownSolana
memeairdrop.net
13 VTTaken DownSolana
meteorapp.org
13 VTTaken DownSolana
multichainssol.live
13 VTLiveRaydium
multiply-solan.com
13 VTTaken DownSolana
niggacz-claim.top
13 VTTaken Downsolana
nodnagakyc.cc
13 VTTaken Down
nowsolcoin.com
13 VTTaken Downsolana
nvda-event.solshelter.cc
13 VTTaken DownAirdrop Scam
okx-listing-x1.vercel.app
13 VTTaken DownOKX
pengy-sol.org
13 VTTaken Downsolana
phantomwallets.blogspot.co.at
13 VTTaken DownPhantom
pudgypienguins.com
13 VTTaken Down
pumpswap.digital
13 VTLivediscord
punchtoken.org
13 VTTaken DownOKX
raydium-protocol.xyz
13 VTLiveRaydium
raydiumreward.xyz
13 VTLiveceler
rewards.sol-galaxy.cc
13 VTLive
smartnodedapp.click
13 VTTaken DownJupiter
solanaairdropofficial.com
13 VTTaken DownSolana
solanavm-eov.pages.dev
13 VTLivesolana
solxjup.onspace.app
13 VTTaken DownJupiter
swcfundcoin-airdrop.live
13 VTLive1inch
trumpworldliberty.com
13 VTTaken DownBinance
vhqck.work
13 VTTaken DownSolana
vwa.x-co.in
13 VTLivesolana
wlfi-drop.fun
13 VTLiverevolut
www-berts.network
13 VTLivesolana
www.sol-galaxy.cc
13 VTTaken DownSolana
www.solanaskr.com
13 VTTaken DownSolana
66362.tax
12 VTTaken DownSolana
78418.tax
12 VTTaken DownSolana
84563.club
12 VTTaken DownSolana
90197.tax
12 VTTaken DownSolana
air.solgalaxy.cc
12 VTTaken DownSolana
billy.allocportal.icu
12 VTLiveacross
breakpoint.onspace.app
12 VTTaken DownSolana
claim-nanj.click
12 VTLiveacross
claim-phantom.com
12 VTLivePhantom
claims-tiktok.xyz
12 VTLiverevolut
crydex.solplanet.cc
12 VTTaken Downfoundation
dappmirror.web.app
12 VTTaken DownSolana
deadguy.soldex.trade
12 VTLivesolana
deep-sols.com
12 VTTaken Downsolana
events-1coin.xyz
12 VTLivesolana
ice.solhq.cc
12 VTTaken DownSolana
jitoback.com
12 VTTaken DownJito
jitofund.com
12 VTLiveacross
join-xerisol.xyz
12 VTLivesolana
jup-token.world
12 VTJupiter
jupboost.cc
12 VTLivejupiter
jupiterchecker.top
12 VTLivejupiter
jupiterchristmas.top
12 VTLiveJupiter
juppiter.cc
12 VTTaken DownJupiter
look.soldex.trade
12 VTTaken Downrevolut
met.allocation.live
12 VTTaken Downsolana
metaora.eu
12 VTTaken DownSolana
metcoin.run
12 VTTaken Downacross
mete0ra.xyz
12 VTLiverevolut
meteora-ag.tech
12 VTTaken DownSolana
multidapps.webspro.xyz
12 VTLivesolana
niggaliquid-drop.fun
12 VTTaken Downacross
online-jup.com
12 VTLivejupiter
ore.distribution.finance
12 VTLiverevolut
« Prev 1 2 3 4 5 Next » Page 2 of 22