solfun[.]in
“Solana Claim”
Сводка доказательств
The domain solfun.in is a confirmed phishing site engaged in brand impersonation targeting Solana users. It presents itself as a cryptocurrency-related platform under the false pretense of a 'Solana Claim' event, designed to deceive victims into disclosing sensitive information or transferring assets. No drainer kit was identified, but the site's fraudulent nature and impersonation of a major blockchain brand classify it as an elevated-risk threat. As of the latest verification, solfun.in has been taken offline.
Technical analysis reveals that solfun.in was flagged by 2 of 95 security vendors on VirusTotal, including Gridinsoft and Seclookup. The domain was registered through NameSilo, LLC on February 22, 2026, and resolves to the IP address 172.67.214.208, hosted on Cloudflare's infrastructure in the US. It appears on 3 security blocklists, specifically PhishDestroy, MetaMask, and SEAL. No SSL certificate was issued for the domain, and its nameservers are jacqueline.ns.cloudflare.com and joaquin.ns.cloudflare.com. Google Safe Browsing did not flag the domain at the time of assessment.
Users who interacted with solfun.in should immediately revoke any token approvals granted to unknown contracts and transfer remaining funds to a new, secure wallet. Enable two-factor authentication on all cryptocurrency and financial accounts, and monitor for unauthorized transactions. Report the phishing domain to the impersonated brand (Solana) and relevant authorities, such as the Anti-Phishing Working Group (APWG) or local cybercrime units. If credentials were entered, change passwords on all associated accounts and watch for signs of identity theft or fraud.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260222-C4A158- Заголовок сохранённой страницы
- Solana Claim
- PDF-файл
- PDF с доказательствами
Полный текст доказательств
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (CA):
Criminal Code Section 342.1
Criminal Code Section 380 - Fraud
PIPEDA
Canadian law prohibits computer fraud and unauthorized access.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | solfun.in |
malicious | Sinkholed |
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
8 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
-
Статус домена
Доступен → Недоступен
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание