solairdrops-lc[.]netlify[.]app
Analysis performed on August 01, 2026 shows that the domain solairdrops-lc.netlify.app is being leveraged as a crypto‑draining malicious site. The domain resolves to the public IP address 35.157.26.135 and is hosted on Netlify, as indicated by the registration information that lists Netlify as the registrar. Authoritative name‑server data is unavailable (NS_NOT_FOUND), which is consistent with Netlify’s managed DNS service that often hides explicit NS records. VirusTotal has processed the domain with 91 antivirus engines; none have generated a detection at the time of scanning.
This absence of detections does not imply the site is benign, only that existing signatures have not yet identified the payload. The domain appears on a single security blocklist and has been specifically flagged by the PhishDestroy service, providing external confirmation of malicious intent. No additional technical artefacts such as SSL certificate details, HTTP status codes, page titles, or brand references have been disclosed, leaving those vectors unverified. Consequently, the exact method used to convince victims to transfer cryptocurrency and the specific wallet addresses targeted remain unknown.
Defenders should treat the domain as hostile and take immediate mitigation steps: block outbound and inbound traffic to 35.157.26.135, add solairdrops-lc.netlify.app to internal deny lists, and monitor other Netlify‑hosted domains for similar patterns. Continuous re‑scanning with multi‑vendor engines is recommended, as future detections may appear. Organizations that process cryptocurrency transactions should enforce strict address verification, educate users about unsolicited wallet‑address requests, and consider sandboxing any content retrieved from this domain pending further forensic analysis.
Threat Response Pipeline
Public Blocklist Status
VirusTotal Analysis
Archived Evidence
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of solairdrops-lc.netlify.app · checked Aug 1, 2026
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive