loginsolflare.com
“loginPage_login”
loginsolflare.com — Непроверенный. Олицетворение бренда: Solflare; Тип мошенничества: Credential Phishing. Сводка доказательств: VirusTotal 12/90 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, Forcepoint ThreatSeeker); URLScan malicious verdict; Spamhaus DBL_PHISH; PhishDestroy score 91/100. Регистратор: NiceNIC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Сводка доказательств
The domain loginsolflare.com was registered on September 03, 2025 through NiceNIC International Group Co., Limited and is currently active. Infrastructure analysis shows the domain resolves to the IPv6 address 2600:9000:214f:5e00:1a:bfed:480:93a1, which belongs to an Amazon-owned network in the United States (AS16509). The site is served over TLS with a certificate issued by Google Trust Services (WE1) and utilizes a content delivery network and Cloudflare nameservers. HTTP requests return a 200 status code, and the page title observed is "loginPage_login". The site is classified as a credential phishing operation that impersonates the Solflare brand. It has been blocked by PhishDestroy, appears on one external blocklist, and received detections from 10 of 95 security vendors on VirusTotal. Independent scoring systems assign a trust score of 1 out of 100. While the exact page content has not been captured, the combination of brand impersonation, credential‑phishing classification, and active hosting indicates a high risk to Solflare users. Defenders should add loginsolflare.com to deny lists, monitor for related traffic, and consider sinkholing the associated IP range. Continuous re‑evaluation is advised, as the threat actor may modify the site or launch additional campaigns targeting the same brand.
Сигналы безопасности
Данные сетевой безопасности Registrar context
Forensic History & Detection Timeline
-
VirusTotal Detections Update Mar 10, 2026 · 03:19 UTCVirusTotal scanner detections updated from 10 to 10. Added scanner alerts: ADMINUSLabs. Resolved alerts: Seclookup.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сбор доказательств
Статус в публичных блок-листах
Сохранённый снимок · 2 sources
Аналитика доменов
Технические деталиDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-09-14 02:37:15 UTC
Технологии · 2 identified
Cloud computing platform offering compute, storage, and networking services.
Amazon Web Services CDN for low-latency content delivery.
Анализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of loginsolflare.com · checked Mar 14, 2026
Сохранённые доказательства результата
Результат и атрибуция блокировки
- Результат
Данные сообщества
1 сообщение сообщества
КатегорияIMPERSONATION
Сообщения сообщества
Сообщил 1 участник сообщества; впервые замечено 10.09.2025
- Сохранённые сообщения
- 1
- Уникальные URL
- 1
Доказательства и внешние отчеты
“Pig butchering love bait crypto scammer to a fraud investment site.”
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание