Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@key-systems.net.
The latest stored availability evidence still shows the domain reachable; 7 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
solana[.]wsbank[.]cc
“Solana Transfer Endpoint - Documentation”
solana.wsbank.cc — 到達可能・アクセス制限あり (HTTP 403). ブランドの偽装: Solana; 詐欺タイプ: Seed Phrase Theft. 証拠の概要: VirusTotal 3/95 (alphaMountain.ai, Forcepoint ThreatSeeker, SOCRadar); PhishDestroy score 65/100. レジストラ: Key-Systems.
元のフォレンジック記録を保持するため、下の PhishDestroy AI 詳細分析は英語のままです。
The domain solana.wsbank.cc is an active phishing site engaged in brand impersonation targeting the Solana cryptocurrency platform. It presents itself as a legitimate Solana service, specifically mimicking documentation pages under the title 'Solana Transfer Endpoint - Documentation', to deceive users into disclosing sensitive information such as wallet credentials. This site poses an elevated risk as a seed-phishing scam, though no crypto drainer kit has been identified at this time.
Technical analysis reveals that solana.wsbank.cc is flagged by 3 of 95 security vendors on VirusTotal, including alphaMountain.ai, Forcepoint ThreatSeeker, and SOCRadar. The domain is blocked by three security blocklists: PhishDestroy, MetaMask, and SEAL. It was registered through Key-Systems GmbH on February 21, 2026, and resolves to the IP address 172.67.198.138, hosted on Cloudflare's infrastructure (AS13335) in the US. The SSL certificate is issued by Google Trust Services / WE1, and the site employs HTTP/3 technology. Nameservers are jerome.ns.cloudflare.com and kia.ns.cloudflare.com, and the observed HTTP status is 403.
Users who may have interacted with solana.wsbank.cc should immediately revoke any token approvals and transfer funds to a new, secure wallet to prevent unauthorized access. If credentials were entered, change passwords on all associated accounts and enable two-factor authentication. Report the phishing domain to the impersonated brand (Solana) and submit it to platforms such as Google Safe Browsing, PhishTank, or the Anti-Phishing Working Group to aid in broader mitigation efforts.
脅威対応 Pipeline
公開ブロックリスト登録状況
使用技術 · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 信頼度 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 信頼度 100%VirusTotalによる分析
アーカイブ済み証拠
証拠および外部報告書
PD-20260118-9BD6A8 Recipient: abuse@key-systems.net このサイトによって何か影響を受けましたか?
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。
任意のドメインを確認する
保存されたブロックリスト、WHOIS、DNS、および公開スキャン証拠を使用した脅威分析
今すぐスキャンフィッシングを報告する
不審なドメインを当社の脅威データベースに報告してください — コミュニティを守りましょう
レポートリアルタイム脅威情報フィード
最近のフィッシングレポートと観察された可用性の変化
監視最新情報を入手し、安全を確保しましょう
リアルタイムの脅威を監視するか、誤検知だと思われる場合はこのリストに異議を申し立ててください