solcheck-ls[.]lol
Evidence Summary
Analysis indicates that the domain solcheck-ls.lol is currently active and classified as a generic phishing site. The domain was scanned by VirusTotal and examined by 91 antivirus and URL‑reputation engines; none of the engines raised a detection, but the absence of a flag does not imply legitimacy. The domain appears on a single external blocklist and is actively blocked by the PhishDestroy service, confirming that at least one security vendor has identified malicious use.
No additional infrastructure details such as registrar information, hosting IP, autonomous system number, SSL certificate data, or HTTP response codes have been disclosed publicly. Consequently, the technical footprint of the site remains sparse, and the precise phishing vector, targeted brand, or credential‑harvesting mechanism has not been publicly documented. Defenders should treat solcheck-ls.lol as a high‑confidence indicator of compromise.
Recommended actions include adding the domain to network‑level DNS blocklists, configuring web‑proxy filters to deny any HTTP or HTTPS requests to the host, and monitoring outbound traffic for attempts to resolve or contact the domain. Where possible, correlate internal logs for any user‑initiated connections to the domain and flag those events for investigation. Continuous re‑evaluation is advised, as further intelligence—such as additional blocklist listings, SSL details, or observed payloads—may emerge and refine the risk posture.
Submitted Evidence Snapshot
- Sent
- Ledger records
- 1
- Case ID
PD-20260803-188145- PDF artifact
- PDF evidence
Full evidence text
Policy Violations: Acceptable Use forbids illegal content; Spam & Abuse Policy prohibits phishing, fraud, malware; Dynadot may disable DNS and suspend domains
Applicable Laws: CFAA 18 U.S.C. §1030, Wire Fraud 18 U.S.C. §1343, CAN-SPAM Act
Data Coverage
Network Security Intelligence
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | dribble-distaste.asset-base.cc |
malicious | Sinkholed |
Threat Response Pipeline
Blocklist coverage
10 monitored external feeds · stored snapshot Aug 11, 2026
8 monitored external feeds No match
Detection timeline
-
First recorded
First stored value: Reachable
-
Domain status
Reachable → Unreachable
-
Domain status
Unreachable → Reachable
Stored Capture
Domain Intelligence
Technical detailsDNS, TLS names and timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies
3 high-confidence technologies identified
VirusTotal Analysis
Archived Evidence
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive