# xingxingsolana.pages.dev — MALICIOUS — Crypto Drainer (Solana Drainer) > Domain xingxingsolana.pages.dev hosts a live Solana Drainer impersonating Solana projects. It remains undetected on VirusTotal (0/95) despite resolving to IP. ## Summary Domain xingxingsolana.pages.dev has been identified as an active Solana Drainer scam site leveraging Cloudflare Pages to impersonate legitimate Solana-based projects. This infrastructure is designed to steal cryptocurrency from victims by tricking them into connecting their Solana wallets and authorizing fraudulent transactions. The drainer kit in use is a known Solana Drainer variant, widely observed in recent crypto-related scams targeting users across decentralized applications and social media platforms. Technical analysis reveals the domain currently shows zero detections on VirusTotal out of 95 engines, indicating a low signature presence among security vendors. It is registered through Cloudflare, Inc., and points to IP address 172.66.44.61. The SSL certificate is issued by Google Trust Services, which may lend an air of legitimacy to unsuspecting users. As of current telemetry, this domain remains unlisted on major blocklists, further increasing exposure risk. PhishDestroy assesses this domain as actively malicious with high risk due to its ongoing operation and cryptocurrency-focused attack vector. Users should immediately block access to xingxingsolana.pages.dev and avoid any interaction involving wallet connections. Security teams are advised to block the domain at the network perimeter and inspect DNS logs for queries to 172.66.44.61 or the domain itself. Despite the absence of detections, the combination of active hosting, drainer tooling, and evasive infrastructure signals significant threat potential. Remaining risk is elevated due to unflagged status and continued availability. ## Threat Details - Verdict: MALICIOUS — Crypto Drainer (Solana Drainer) - Site status: unknown (HTTP ?) - Drainer type: Solana Drainer ## Domain Intelligence - Registrar: Cloudflare, Inc. - IP: 172.66.44.61 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/846f6a69-535f-4189-8f0a-3dca5ef2430f - PhishDestroy: https://phishdestroy.io/domain/xingxingsolana.pages.dev/ - LLM endpoint: https://phishdestroy.io/domain/xingxingsolana.pages.dev/llm.txt ## If You Visited This Site 1. Revoke all token approvals immediately (revoke.cash / unrekt.net) 2. Move remaining funds to a new wallet 3. Do not interact with any transactions from this site 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/xingxingsolana.pages.dev/ Last updated: 2026-03-29