# waronsolana.lat — MALICIOUS — Crypto Drainer (Solana Drainer) > waronsolana.lat is a low-risk crypto drainer impersonating Solana. Stay alert and avoid this offline phishing site. Learn how to protect yourself now. ## Summary PhishDestroy identifies waronsolana.lat as a phishing domain impersonating the Solana brand to target cryptocurrency users. Although currently offline and assessed as low risk, this domain was designed to drain crypto assets, posing a threat to individuals interacting with the Solana ecosystem. Users encountering this site risk losing sensitive information or digital assets. This phishing attack operates by mimicking official Solana pages, using a drainer kit specifically crafted for Solana wallets. Visitors to waronsolana.lat might have seen a deceptive page titled "Just a moment..." aiming to trick them into providing private keys or approving malicious transactions. The domain was registered recently in March 2026 and resolved to an IP address linked to suspicious activity, with multiple security blocklists flagging it. If you visited waronsolana.lat, PhishDestroy recommends immediately reviewing your Solana wallet for unauthorized activity and changing your credentials. Avoid entering any sensitive data on suspicious domains, and use trusted sources for wallet management. Keeping security software updated and monitoring your accounts can help mitigate risks from such crypto drainers. ## Threat Details - Verdict: MALICIOUS — Crypto Drainer (Solana Drainer) - Site status: dead (HTTP 403) - Drainer type: Solana Drainer - Target brand: Solana - Page title: Just a moment... ## Domain Intelligence - Registered: 2026-03-09 13:07:02 - Registrar: PDR Ltd. d/b/a PublicDomainRegistry.com - Country: IN - IP: 188.114.97.3 - IP Country: US - IP City: San Francisco - IP Org: AS13335 Cloudflare, Inc. - Nameservers: amos.ns.cloudflare.com maya.ns.cloudflare.com - SSL Issuer: Let's Encrypt / E8 ## Detection Status - VirusTotal: 2 vendors flagged Vendors: ["Gridinsoft", "SOCRadar"] - Google Safe Browsing: clean - Blocklists: 3 hits Lists: ["PhishDestroy", "MetaMask", "SEAL"] ## Evidence - Screenshot: https://i.ibb.co/qYk2vfms/ebd49c694055.png - Cloudflare Radar: https://radar.cloudflare.com/scan/adedd5d8-5f95-447c-91bb-4ba62e2bb4ea - PhishDestroy: https://phishdestroy.io/domain/waronsolana.lat/ - LLM endpoint: https://phishdestroy.io/domain/waronsolana.lat/llm.txt ## If You Visited This Site 1. Revoke all token approvals immediately (revoke.cash / unrekt.net) 2. Move remaining funds to a new wallet 3. Do not interact with any transactions from this site 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/waronsolana.lat/ Last updated: 2026-03-19