http://solairdrops-mh.netlify.app/HTTP 404
3.1 KB
1.4 KB
0 internal · 1 external
Content-Type: text/htmlServer: NetlifyAll stored response-header names (5)
Content-TypeDateServerX-Nf-Request-IdTransfer-Encodingsolairdrops-mh.netlify.app — Contenuto non disponibile. Simulazione del marchio: Airdrop Scam; Tipo di truffa: Airdrop Scam. Riepilogo delle prove: VirusTotal 0/91; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Registrar: Netlify.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
This domain, solairdrops-mh.netlify.app, is currently under investigation as a crypto drainer phishing site. As of July 29, 2026, the domain remains active and is hosted on Netlify infrastructure, resolving to IP address 63.176.8.218. Infrastructure analysis reveals the domain lacks configured nameservers, a potential indicator of ephemeral or misconfigured hosting often associated with malicious campaigns. The domain appears on one security blocklist and is actively blocked by PhishDestroy, though no detections were reported by the 91 vendors that scanned it on VirusTotal.
The absence of detections does not confirm safety, particularly given the domain's presence on a blocklist and its classification as a crypto drainer. Defenders should note that the domain's hosting provider, Netlify, is a legitimate platform frequently abused for phishing due to its ease of deployment and free tier. The IP address 63.176.8.218 may host additional malicious domains, warranting further investigation into associated infrastructure. While the exact content of the site has not been analyzed, the classification as a crypto drainer suggests it is designed to target cryptocurrency wallets, likely through deceptive airdrop or giveaway schemes.
Organizations should treat this domain as high-risk and implement blocking measures at the network and endpoint levels. Monitoring for related domains or subdomains under the netlify.app namespace is recommended, as attackers often rotate through similar infrastructure. No additional brand or kit details are available at this time, and further analysis is required to determine the full scope of the threat.
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com Confidenza al 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Confidenza al 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Confidenza al 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confidenza al 100%Google PageSpeed Insights — mobile performance audit of solairdrops-mh.netlify.app · checked Jul 29, 2026
Timestamped response metadata retained by the local collection pipeline. Each value below belongs to the displayed archive time.
http://solairdrops-mh.netlify.app/Content-Type: text/htmlServer: NetlifyContent-TypeDateServerX-Nf-Request-IdTransfer-EncodingSe hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaSegnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraControlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo