solus-app.digital
“Solus”
Evidence Summary
The domain solus-app.digital was observed hosting a crypto‑related phishing campaign and is currently taken offline as of the report date, July 24 2026. The site presented the page title "Solus" and was classified as a generic phishing operation with a crypto scam focus. Infrastructure analysis shows the domain resolves to the IP address 62.60.226.16, which belongs to the Autonomous System AS214351 owned by FEMO IT SOLUTIONS LIMITED and is geolocated in Germany. The domain is registered through PDR Ltd., doing business as PublicDomainRegistry.com, and utilizes four nameservers (dns1.regway.com through dns4.regway.com).
No SSL certificate was detected, indicating the site operated over plain HTTP. Detection metrics indicate that four of ninety‑five security vendors on VirusTotal flagged the domain, and it appears on one known blocklist, specifically PhishDestroy. Additional reputation data shows a Gridinsoft trust score of zero out of one hundred and a single AlienVault OTX pulse referencing the domain. The risk level is elevated, reflecting the confirmed malicious activity.
Defenders should block the domain and its associated IP at network perimeters, update URL filtering and DNS sinkhole rules, and monitor for any future re‑use of the same registrar or nameserver set. Given the lack of an SSL certificate and the low trust score, any attempts to contact the site are unlikely to be legitimate. Continuous vigilance is advised, especially for users who may receive unsolicited communications referencing cryptocurrency transactions, as the domain’s prior behavior suggests a targeted phishing lure.
Forensic History & Detection Timeline
-
Domain Status Transition Jul 27, 2026 · 00:42 UTCDomain state transitioned from dead to alive.
-
Cloudflare Radar Scan Mar 7, 2026 · 17:55 UTCCloudflare Radar scan registered: View Radar report.
-
Domain Status Transition Feb 27, 2026 · 06:38 UTCDomain state transitioned from alive to dead.
Threat Response Pipeline
Public Blocklist Status
Stored Capture · 2 sources
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analysis
Archived Evidence
Community reports
Reported by 1 community member, first seen Sep 17, 2025
- Stored reports
- 1
- Unique reported URLs
- 1
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive