Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is dmzhostabuse@gmail.com.
The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
solanaqrcode[.]hk
“Solana QRcode - solanaqrcode.hk”
solanaqrcode.hk — Belum terverifikasi. Peniruan identitas merek: Solana; Jenis penipuan: Crypto Scam. Ringkasan bukti: VirusTotal 5/91 (alphaMountain.ai, Chong Lua Dao, Fortinet, Gridinsoft, Webroot); URLQuery 1 alert; Spamhaus DBL_PHISH; PhishDestroy score 70/100. Registrar: NiceNIC.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
On 22 July 2026, solanaqrcode.hk was identified as an active brand‑impersonation site targeting Solana users. The domain was registered on 21 February 2026 through NiceNIC International Group Co., Limited and resolves to the IPv4 address 80.94.92.202, which is allocated to AS47890 UNMANAGED LTD in Romania. The hosting environment runs Ubuntu with an Apache HTTP Server, WordPress, MySQL, PHP, and the Yoast SEO plugin; the site serves over HTTPS using a Let’s Encrypt certificate (subject E7) and returns HTTP 200 for the landing page whose title is “Solana QRcode – solanaqrcode.hk”. DNS is delegated to ns3.my-ndns.com and ns4.my-ndns.com.
Reputation data show a Gridinsoft trust score of 0 / 100 and the domain is listed on at least one security blocklist; it is also blocked by the PhishDestroy service. AlienVault OTX references the domain in a single threat‑intelligence pulse, and VirusTotal scans report that five of ninety‑one scanners flagged the domain as malicious. The combination of a newly created domain, low trust score, active blocklist entries, and multiple vendor detections indicates a high‑risk infrastructure that is likely being used to lure cryptocurrency users into fraudulent QR‑code interactions.
At present, the specific content hosted on the page has not been publicly disclosed, and the exact phishing workflow remains unknown. Defenders should add the domain and its associated IP address to blocklists, enforce DNS sink‑hole policies for the listed nameservers, and monitor outbound traffic for attempts to resolve or contact the host. Continuous re‑scanning with multi‑vendor services is recommended to capture any changes in the site’s behavior, and any observed credential or wallet‑address submissions should be reported to the Solana security team for further investigation.
Intelijen Keamanan Jaringan Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | solanaqrcode.hk |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Latest Classified Outcome 2026-08-13 02:37:38 UTC
Teknologi · 8 identified
Open-source CMS powering over 40% of websites worldwide.
Open-source relational database management system.
Server-side scripting language designed for web development.
Most widely used open-source HTTP server software.
Web analytics service tracking website traffic and user behavior.
marketingplatform.google.comAnalisis VirusTotal
Bukti Terarsip
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of solanaqrcode.hk · checked Mar 14, 2026
Bukti & Laporan Eksternal
PD-20260130-5B4787 Recipient: dmzhostabuse@gmail.com Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive