jupiter[.]solgalaxy[.]icu
Domain Security & Threat Intelligence Report
Analyst Security Overview
AI-GeneratedThe domain jupiter.solgalaxy.icu posed as a fraudulent site associated with airdrops, specifically targeting Solana users. It received a VT score of 15/95, indicating a substantial risk to potential victims. This domain was identified as a Solana drainer, and its presence on the internet suggested it could lead to financial loss for users seeking legitimate airdrop opportunities.
Registered through PDR Ltd. d/b/a PublicDomainRegistry.com, this domain was only 85 days old when it was reported. The domain's IP address, 172.67.189.224, was linked to multiple blocklists, with three separate listings indicating its malicious nature. Following the identification of the threat, PhishDestroy acted promptly by reporting and subsequently taking down the domain.
As of now, jupiter.solgalaxy.icu is marked as dead. PhishDestroy continues to monitor the situation to prevent any resurgence of similar phishing attempts that target vulnerable Solana users.
Threat Response Pipeline
Public Blocklist Status
Website Screenshot
Domain Intelligence
uriah.ns.cloudflare.com
abuse@publicdomainregistry.com
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If you have interacted with this domain, entered personal information, or connected a cryptocurrency wallet — take immediate action. Below are resources to help you report the incident and protect yourself.
Report to Your Local Authorities
Select your country to see local cybercrime reporting contacts and complaint templates.
Related Domain Reports
More Domains at PDR Ltd. d/b/a PublicDomainRegistry.com
Stay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive
URLScan Report