usoronsol[.]digital
PhishDestroy identifies usoronsol.digital as a generic phishing domain targeting cryptocurrency users, specifically those interested in the Solana ecosystem. The domain name suggests a fraudulent attempt to impersonate Solana-related services, likely aiming to deploy a crypto drainer to steal users' digital assets. This threat was cataloged with unique seed 1d02a0 and has been assessed as high risk due to its malicious intent and the potential for significant financial loss.
The domain was created on May 25, 2026, which is notably in the future, indicating possible data anomalies or advanced planning by threat actors. VirusTotal analysis shows that 18 out of 95 security vendors flagged this domain as malicious, underscoring its dangerous reputation. It was registered through PDR Ltd. d/b/a PublicDomainRegistry.com, a known registrar often abused for phishing operations. Additionally, the domain appears on three security blocklists and is listed in ten AlienVault OTX threat intelligence pulses, further confirming its malicious nature. Google Safe Browsing likely marks it as unsafe, though specific GSB status was not provided.
As of the latest update, usoronsol.digital has been taken offline, reducing the immediate risk to potential victims. However, the underlying infrastructure may remain active, and similar domains could appear under different names. Users are advised to remain vigilant, especially when encountering unsolicited links related to cryptocurrency platforms. PhishDestroy recommends verifying any suspicious domain through its database and avoiding interaction with unverified sites. Always double-check URLs before entering sensitive information or connecting wallets.
Network Security Intelligence
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DigiCert UltraDNS | usoronsol.digital |
malicious | Sinkholed |
| Hagezi Threat Feed | usoronsol.digital |
malicious | Sinkholed |
| DNS4EU | usoronsol.digital |
malicious | Sinkholed |
| Cloudflare DNS | usoronsol.digital |
malicious | Sinkholed |
Threat Response Pipeline
Public Blocklist Status
Stored Capture
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive