solctise[.]finance
“TRON Airdrop Checker — Claim Your Eligible Tokens”
Сводка доказательств
This domain, solctise.finance, is flagged as part of an airdrop scam infrastructure designed to impersonate legitimate token distribution events. Analysis indicates the site presented itself as a "TRON Airdrop Checker — Claim Your Eligible Tokens" platform, a common tactic to lure cryptocurrency holders into disclosing wallet credentials or transferring funds under false pretenses. No specific drainer kit signatures were identified in available telemetry, though the domain aligns with known patterns of cryptocurrency phishing campaigns targeting decentralized finance (DeFi) users.
Infrastructure analysis reveals the domain was registered through NiceNIC International Group Co., Limited on February 21, 2026, an unusually future-dated creation timestamp suggesting potential data manipulation or a placeholder record. The domain resolved to IP address 185.218.16.135, hosted on AS400992 (ZhouyiSat Communications) in the United States. At the time of assessment, 13 out of 95 security vendors on VirusTotal flagged solctise.finance as malicious, while it appeared on a single security blocklist. The SSL certificate was issued by Let's Encrypt (serial number E8), a common choice for both legitimate and malicious domains due to its accessibility. Google Safe Browsing data was not explicitly cited, but the domain's inclusion on other blocklists corroborates its classification as high-risk.
As of the latest verification, solctise.finance has been taken offline, likely following detection and reporting by security entities. While the immediate threat is mitigated, the infrastructure may resurface under a different domain or IP address, a frequent tactic in cryptocurrency phishing operations. Users who interacted with the domain should revoke any connected wallet permissions, monitor for unauthorized transactions, and verify the legitimacy of future airdrop claims through official project channels. Organizations should update blocklists to include this domain and its associated IP, while remaining vigilant for similar campaigns leveraging future-dated registration timestamps or Let's Encrypt certificates in combination with cryptocurrency-themed lures.
Data Coverage
Данные сетевой безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание