daddychillsolana[.]com
“daddychillsolana.com”
daddychillsolana.com — Непроверенный. Олицетворение бренда: Solana; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 1/95 (SOCRadar); PhishDestroy score 55/100. Регистратор: NiceNIC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of daddychillsolana.com shows a recently registered domain (creation date February 22, 2026) that has been used for a brand‑impersonation crypto scam targeting Solana users. The domain resolves to IP address 188.114.97.3, which belongs to Cloudflare, Inc. (AS13335) and is geolocated in the United States. DNS is hosted on Cloudflare name servers dean.ns.cloudflare.com and priscilla.ns.cloudflare.com, and the site does not present an SSL/TLS certificate, indicating that any HTTP traffic would have been unencrypted. The only visible page element is the title tag, which simply repeats the domain name. Threat intelligence flags the site as a crypto scam and notes that it impersonates the Solana brand.
It has been blocked by the PhishDestroy service and appears on a single external blocklist. VirusTotal analysis recorded a single vendor detection out of ninety‑five scanners, suggesting at least one security product identified the domain as malicious. Current operational status is offline, which may be temporary or part of takedown efforts. Defenders should continue to block the domain at the network perimeter and add the associated IP to any existing Cloudflare‑origin deny‑list, as the IP is shared among many legitimate services and may be reused.
Monitoring for re‑registration of the domain or for similar domains registered by the same registrar (NiceNIC International Group Co., Limited) is advisable. Because the site lacks SSL, any future attempts to serve content over HTTPS would require a new certificate, providing an additional detection point. Organizations should educate users about unsolicited Solana‑related messages and enforce verification of legitimate URLs before any crypto transactions. Continuous threat‑intel feed updates are recommended to capture any new detections related to this indicator.
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-14 03:00:11 UTC
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
PD-20260222-861000 Recipient: abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание