MALICIOUS — CRITICAL
solstice[.]now
This domain, solstice.now, is flagged as an active credential theft phishing domain.
- VirusTotal
- 7/95
- Blocklists
- No stored match
- Доступность
- Последний известный активный · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
solstice.now — Последний известный активный (HTTP 200). Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 7/95 (ChainPatrol, alphaMountain.ai, CRDF, CyRadar, Forcepoint ThreatSeeker); PhishDestroy score 81/100. Регистратор: Dynadot.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Evidence Analysis
Solstice.Now Phishing: Credential Theft Threat (7/95 VT)
Solstice.Now is flagged as a credential theft phishing domain. VirusTotal shows 7/95 detections. Analysis indicates active threat infrastructure targeting users.
This domain, solstice.now, is flagged as an active credential theft phishing domain. The site presents itself under the title 'MeatLess.io - Plant-Powered Future | Coming Soon,' a deceptive landing page likely designed to harvest login credentials or personal information from visitors. The threat is classified as credential theft due to the domain's association with phishing campaigns that mimic legitimate services to trick users into entering sensitive data. The use of a generic 'coming soon' page suggests the attacker may be preparing or rotating phishing lures, making it a high-risk target for anyone reaching the domain.
Technical evidence confirms the elevated risk. VirusTotal reports 7 out of 95 security vendors flagging this domain as malicious, indicating broad detection across the security community. The domain is registered through Dynadot LLC and was created on July 16, 2025, making it very recent. It resolves to IP address 63.176.8.218 and uses a Let's Encrypt SSL certificate, which provides a false sense of legitimacy. The domain appears on 1 security blocklist, specifically PhishDestroy, and has a Gridinsoft trust score of 0/100, reinforcing its malicious status. Infrastructure analysis reveals no connection to legitimate plant-based or food services, supporting the phishing classification.
Users who have visited solstice.now should immediately change passwords for any accounts accessed from that domain and enable multi-factor authentication (MFA) where available. Scan devices with updated antivirus software to check for malware or keyloggers. Monitor financial accounts and credit reports for unusual activity. Report the domain to relevant cybersecurity authorities or threat intelligence platforms. Avoid visiting the domain again, as further interaction may lead to additional compromises. The domain remains active, so ongoing vigilance is recommended.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Охват данных12 recorded checks
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of solstice.now · checked Jun 27, 2026
Доказательства и внешние отчетыIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.