flopisoiana[.]xyz
“Flopi - The cutest, floppiest friend on Solana”
flopisoiana.xyz — No verificado. Suplantación de marca: Solana; Tipo de estafa: Crypto Scam. Resumen de las pruebas: VirusTotal 4/93 (Fortinet, Gridinsoft, Seclookup, SOCRadar); URLQuery 1 alert; Spamhaus DBL_PHISH; 1 external blocklist match (ScamSniffer); PhishDestroy score 66/100. Registrador: NiceNIC.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
Analysis of flopisoiana.xyz indicates a targeted brand‑impersonation campaign aimed at Solana users. The domain was registered on February 21, 2026 through NiceNIC International Group Co., Limited and resolves to IP address 104.21.72.19, which is part of Cloudflare’s AS13335 network located in the United States. The authoritative nameservers are clark.ns.cloudflare.com and ulla.ns.cloudflare.com. No SSL/TLS certificate is presented, and the site currently returns an offline HTTP status, confirming that the content is not reachable at the time of assessment.
The page title retrieved before takedown reads "Flopi - The cutest, floppiest friend on Solana," explicitly referencing Solana and supporting the classification as a crypto‑related impersonation. VirusTotal scans show four detections out of ninety‑three security vendors, reinforcing the malicious nature of the host. The domain is listed on two external blocklists, PhishDestroy and ScamSniffer, which have already flagged it as a crypto scam. The evidence collectively points to a deliberate attempt to lure Solana community members, likely by promoting a fabricated “Flopi” service or token.
Defenders should add flopisoiana.xyz to internal URL filtering and DNS block policies, monitor the Cloudflare IP range for any re‑use of the same address, and watch for re‑registration of the domain. Continuous observation of the registrar NiceNIC and the associated nameservers is advised, as threat actors often resurrect similar infrastructure under new labels. Organizations that interact with Solana ecosystems should alert users to the specific page title and the lack of a valid TLS certificate, reinforcing that any unsolicited links claiming to offer Solana‑related benefits from this domain are malicious.
Inteligencia de seguridad de red Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | flopisoiana.xyz |
malicious | Sinkholed |
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
ICANN OVERSIGHT
Acreditación y contexto RAA
Acreditación y contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-19 03:01:44 UTC
Análisis de VirusTotal
Evidencias archivadas
Datos y informes externos
PD-20260202-5CF548 Recipient: abuse@nicenic.net ¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.