usorsolana[.]tech
“U.S Oil ($USO) - Tokenising Real World Oil using Ledger Blockchain”
usorsolana.tech — Conteúdo indisponível (HTTP 502). Representação da marca: Solana; Tipo de golpe: Fake Airdrop. Resumo das evidências: VirusTotal 1/95 (Gridinsoft); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Registrador: PDR.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
The domain usorsolana.tech is a confirmed phishing site engaged in brand impersonation targeting Solana users. It presents itself as a legitimate Solana-related project, specifically promoting a fraudulent 'U.S Oil ($USO)' tokenization scheme, but operates as an airdrop scam and wallet-connect phishing page designed to steal cryptocurrency. No drainer kit was identified, but the site poses an elevated risk to visitors. As of the latest verification, usorsolana.tech has been taken offline.
Technical indicators confirm the malicious nature of usorsolana.tech. The domain is flagged by 1 of 95 VirusTotal security vendors, including Gridinsoft, which assigned a trust score of 0/100. It appears on 3 security blocklists, specifically PhishDestroy, MetaMask, and SEAL. Registered through PDR Ltd. d/b/a PublicDomainRegistry.com on February 21, 2026, the domain resolves to the IP address 104.21.80.148, hosted on Cloudflare's network (AS13335) in the US. No SSL certificate was issued, and the observed page title was 'U.S Oil ($USO) - Tokenising Real World Oil using Ledger Blockchain'. The domain uses Cloudflare nameservers dana.ns.cloudflare.com and dilbert.ns.cloudflare.com.
Users who interacted with usorsolana.tech should immediately revoke any token approvals granted to the site and transfer funds to a new wallet to prevent unauthorized access. If credentials or wallet connections were shared, enable two-factor authentication on all accounts and monitor for suspicious transactions. Report the phishing domain to relevant platforms, including the impersonated brand Solana, and submit it to additional blocklists such as Google Safe Browsing or PhishTank to help protect others.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análise do VirusTotal
Evidências e relatórios externos
PD-20260221-904405 Recipient: abuse@publicdomainregistry.com Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo