MALICIOUS — CRITICAL
solany[.]pw
Solany.pw targets Solana users by mimicking the brand with a fraudulent 'Solana Rewards Portal — Eligibility Check' page.
- VirusTotal
- 15/91
- Blocklists
- 2 · MetaMask, SEAL
- Ketersediaan
- Terselubung · dapat dijangkau · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@beget.com.
The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
Jump to section
solany.pw — Terselubung · dapat dijangkau (HTTP 200). Peniruan identitas merek: Solana; Jenis penipuan: Brand Impersonation. Ringkasan bukti: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); URLQuery 3 alerts; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; cloaking observed; PhishDestroy score 100/100. Registrar: Beget.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Evidence Analysis
solany.pw - Solana Impersonation Scam
solany.pw impersonates Solana, flagged by 1 of 95 on VT. Taken down but listed on 3 blocklists, including MetaMask and SEAL.
Solany.pw targets Solana users by mimicking the brand with a fraudulent 'Solana Rewards Portal — Eligibility Check' page. The domain, flagged by only 1 out of 95 vendors on VirusTotal, highlights the importance of early detection systems like PhishDestroy's, which identified the threat on its creation date, 2026-05-02.
Despite being offline now, solany.pw has been added to three public blocklists: PhishDestroy, MetaMask, and SEAL. This quick action helps prevent further exploitation of Solana's brand. The domain was registered through Beget LLC and hosted on an IP managed by Cloudflare, Inc., located in Canada. The use of Let's Encrypt for SSL certification is typical for phishing sites aiming to appear legitimate.
The scam's platform risk score of 78/100 indicates a high potential for harm, particularly given the domain's initial low detection rate. This case exemplifies how phishing domains can exploit the time lag between registration and broader security vendor detection. By acting swiftly, PhishDestroy and other blocklist entities mitigate risks to users who might otherwise fall prey to such scams.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Cakupan data12 recorded checks
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | solany.pw |
malicious | Sinkholed |
| Hagezi Threat Feed | solany.pw |
malicious | Sinkholed |
| DNS4EU | solany.pw |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Teknologi · 6 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org Keyakinan 100%Vue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.
vuejs.org Keyakinan 100%Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com Keyakinan 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Keyakinan 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Keyakinan 100%Analisis VirusTotal
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of solany.pw · checked May 2, 2026
Bukti & Laporan EksternalIndependent lookups and source reports
PD-20260502-D3CA7A Recipient: abuse@beget.com Victim safety and official reportingImmediate actions and verified reporting channels
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.