http://solairdrops-mh.netlify.app/HTTP 404
3.1 KB
1.4 KB
0 internal · 1 external
Content-Type: text/htmlServer: NetlifyAll stored response-header names (5)
Content-TypeDateServerX-Nf-Request-IdTransfer-Encodingsolairdrops-mh.netlify.app — Contenu indisponible. Usurpation de l'identité de la marque : Airdrop Scam; Type d'arnaque : Airdrop Scam. Résumé des preuves: VirusTotal 0/91; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Bureau d’enregistrement: Netlify.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
This domain, solairdrops-mh.netlify.app, is currently under investigation as a crypto drainer phishing site. As of July 29, 2026, the domain remains active and is hosted on Netlify infrastructure, resolving to IP address 63.176.8.218. Infrastructure analysis reveals the domain lacks configured nameservers, a potential indicator of ephemeral or misconfigured hosting often associated with malicious campaigns. The domain appears on one security blocklist and is actively blocked by PhishDestroy, though no detections were reported by the 91 vendors that scanned it on VirusTotal.
The absence of detections does not confirm safety, particularly given the domain's presence on a blocklist and its classification as a crypto drainer. Defenders should note that the domain's hosting provider, Netlify, is a legitimate platform frequently abused for phishing due to its ease of deployment and free tier. The IP address 63.176.8.218 may host additional malicious domains, warranting further investigation into associated infrastructure. While the exact content of the site has not been analyzed, the classification as a crypto drainer suggests it is designed to target cryptocurrency wallets, likely through deceptive airdrop or giveaway schemes.
Organizations should treat this domain as high-risk and implement blocking measures at the network and endpoint levels. Monitoring for related domains or subdomains under the netlify.app namespace is recommended, as attackers often rotate through similar infrastructure. No additional brand or kit details are available at this time, and further analysis is required to determine the full scope of the threat.
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com Confiance à 100 %HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Confiance à 100 %Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Confiance à 100 %HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confiance à 100 %Google PageSpeed Insights — mobile performance audit of solairdrops-mh.netlify.app · checked Jul 29, 2026
Timestamped response metadata retained by the local collection pipeline. Each value below belongs to the displayed archive time.
http://solairdrops-mh.netlify.app/Content-Type: text/htmlServer: NetlifyContent-TypeDateServerX-Nf-Request-IdTransfer-EncodingSi vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerRapports de phishing récents et changements de disponibilité observés
SurveillerSurveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif