sommia[.]network
“Somnia Airdrop”
साक्ष्य सारांश
The domain sommia.network was registered on 2026-02-21 and is currently taken offline. Analysis indicates that the site hosted a crypto‑airdrop phishing campaign, as reflected by the page title “Somnia Airdrop” and the classification of the kit as an “Airdrop Scam”. The infrastructure points to a single IPv6 address 2606:4700:3035::ac43:c786, which belongs to Cloudflare (AS13335) and resolves to a location in the United States. The SSL certificate presented under the label “WE1” was observed, confirming that HTTPS was in use while the site was active. Five of ninety‑three VirusTotal scanners flagged the domain as malicious, and it appears on five external blocklists.
It has been listed by PhishDestroy, ScamSniffer, Polkadot, Enkrypt, and Codeesura. Gridinsoft assigned a trust score of 0 out of 100, indicating a high confidence of malicious intent. AlienVault OTX includes the domain in one threat‑intelligence pulse, further corroborating its association with crypto‑related scams. No additional content or payload details have been published, and the exact phishing landing page layout remains unverified because the site is offline. The limited number of vendor detections suggests that many scanners have not yet observed the payload, but the presence on multiple blocklists and the low trust score provide strong evidence of abuse.
Defenders should block resolution of 2606:4700:3035::ac43:c786 at the network perimeter and add sommia.network to URL filtering and email security policies. Continuous monitoring of Cloudflare‑hosted IPv6 ranges for similar airdrop‑related activity is advised. Incident response teams should treat any email or message referencing a “Somnia Airdrop” as suspicious and quarantine related artifacts. Finally, maintain updated threat‑intel feeds to capture any re‑use of the domain or its infrastructure in future campaigns.
Data Coverage
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 11/08/2026
6 निगरानी वाले बाहरी स्रोत कोई मिलान नहीं
फॉरेंसिक इंटेलिजेंस
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।