solanavolumebot[.]digital
“Solana Volume Bot - Automated Trading Volume Booster for Solana DEX”
This domain is flagged as a high-risk crypto_drainer specifically targeting Solana blockchain users. Analysis indicates the site operated under the guise of a "Solana Volume Bot - Automated Trading Volume Booster for Solana DEX," a common tactic to lure victims into connecting wallets to malicious smart contracts designed to siphon funds. The threat type is classified as a crypto_drainer, a specialized form of fraud that exploits blockchain transactions to drain assets from connected wallets without user consent or awareness.
Infrastructure analysis reveals multiple technical indicators supporting this classification. The domain resolves to IP address 64.29.17.65 and was registered through Name.com, Inc. on October 10, 2025. It employed Vercel for hosting and utilized a Let's Encrypt SSL certificate, which, while providing encryption, does not validate legitimacy. The domain appears on two security blocklists (PhishDestroy and OISD) and was flagged by 1 of 95 security vendors on VirusTotal. Additional red flags include the use of HTTP Strict Transport Security (HSTS), a security feature often exploited by malicious actors to appear more credible. The drainer kit identified is labeled "Solana Drainer," confirming the specific attack vector.
Users and organizations are advised to take immediate mitigation steps to prevent exposure to this threat. First, ensure all wallet connections are revoked from any interaction with solanavolumebot.digital or similar domains. Utilize blockchain explorers to verify transaction histories and check for unauthorized transfers. Implement wallet security best practices, such as using hardware wallets for high-value assets and enabling transaction simulation tools to preview smart contract interactions before execution. Network-level protections should include blocking the domain and its associated IP (64.29.17.65) at firewalls and DNS resolvers. Security teams should monitor for additional domains registered under the same infrastructure or impersonating Solana-related services, particularly those promising automated trading or volume-boosting functionalities. Given the high-risk nature of crypto_drainers, affected users should report the incident to relevant blockchain security platforms and consider engaging forensic analysis to trace and potentially recover stolen assets.
Network Security Intelligence
Threat Response Pipeline
Public Blocklist Status
Stored Capture
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
VirusTotal Analysis
Archived Evidence
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of solanavolumebot.digital · checked Jun 27, 2026
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive