# solbank-finances.pages.dev — SUSPICIOUS > PhishDestroy identifies solbank-finances.pages.dev as a banking phishing site targeting financial users. Check the full report. ## Summary PhishDestroy identifies solbank-finances.pages.dev as an active banking phishing domain designed to mimic legitimate financial institutions. This domain employs deceptive tactics to harvest sensitive banking credentials and financial data from unsuspecting users. The infrastructure suggests the use of a drainer kit, likely tailored to extract login details, transaction data, or personal identification information under the guise of a secure banking portal. No affiliation with established financial brands has been confirmed, indicating a probable spoofing campaign. This domain shows a VirusTotal detection score of 0/95, remaining unflagged despite its malicious nature. It resolves to IP 172.66.47.62 and is registered through Cloudflare, Inc., with an SSL certificate issued by Google Trust Services. The domain has been flagged on 2 security blocklists and is blocked by ScamSniffer and Enkrypt, highlighting its suspicious classification. The technical indicators suggest a rapidly evolving threat with evasion techniques, including the use of legitimate infrastructure (Cloudflare, Google Trust Services) to obscure malicious intent. As of current analysis, solbank-finances.pages.dev remains active and under investigation, posing a moderate to high risk to potential victims. Immediate response actions include continued monitoring, domain takedown requests, and user advisories. While detection rates remain low, users are strongly advised to avoid interacting with this domain. Remaining risk includes potential expansion into broader phishing campaigns or integration with additional malicious infrastructure. Enhanced scrutiny and proactive blocking mechanisms are recommended to mitigate further harm. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registrar: Cloudflare, Inc. - IP: 172.66.47.62 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 2 hits Lists: ["ScamSniffer", "Enkrypt"] ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/6327b101-aa70-440e-a0cc-f282aabbd997 - PhishDestroy: https://phishdestroy.io/domain/solbank-finances.pages.dev/ - LLM endpoint: https://phishdestroy.io/domain/solbank-finances.pages.dev/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/solbank-finances.pages.dev/ Last updated: 2026-03-28