Domain Security Reports

Search our database of flagged domains. Check if a website is a scam, phishing, or legitimate.

0
Total Tracked
0
Detected
0
Content Alive
0
Content Dead
0
VT Pending
Solana Drainer
CRITICAL THREAT

Understanding and Combating Solana Drainer Threats

Solana Drainer threats pose a critical risk with 1,323 domains tracked and 184 currently active. PhishDestroy insights reveal top TLDs and registrars involved.

2,168
Domains Detected
CRITICAL
Threat Level

How This Attack Works

Solana Drainer threats exploit vulnerabilities in Solana's crypto ecosystem to steal funds. Understanding their operation is crucial for prevention.

STEP 1
Target Identification
Attackers identify potential victims through phishing emails and fake websites.
STEP 2
Phishing Execution
Victims are lured to malicious sites mimicking legitimate platforms, like phantomairdrop.com.
STEP 3
Credential Harvesting
Once on the fake site, victims input sensitive information, believing it to be secure.
STEP 4
Fund Drainage
Attackers utilize harvested credentials to access wallets and drain funds via illicit transactions.

Technical Analysis

Solana Drainer attacks leverage phishing techniques to exploit the Solana blockchain. Attackers often create copycat websites using top TLDs such as .com, .xyz, and .cc, with domains hosted by registrars like Cloudflare, Inc. and PDR Ltd. These sites employ deceptive JavaScript and HTML code to mimic legitimate interfaces, tricking users into entering their private keys or seed phrases. Once credentials are obtained, attackers interact with the Solana blockchain via RPC calls to execute unauthorized transactions. The usage of smart contract functions like `transfer` and `approve` allows attackers to swiftly move funds out of victims' accounts. The infrastructure often involves a network of proxy servers to obfuscate the origin of the attack and make tracing back to the perpetrators difficult.

Real Cases

Phantom Wallet Breach (2023)
$2 million stolen
Attackers created a fraudulent Phantom wallet site to harvest user credentials, resulting in a $2 million theft.
SolUnion Scam (2024)
$1.5 million stolen
Using the domain phantom.solunion.cc, scammers executed a sophisticated phishing attack, stealing $1.5 million in SOL.
VaultBenefits Exploit (2024)
$3 million stolen
A fake airdrop campaign via vaultbenefits.net led to credential compromise and a subsequent $3 million drain.

How to Detect

Unsolicited emails or messages offering free SOL or airdrops
Websites with slight misspellings of legitimate names
Requests for private keys or seed phrases
Suspicious URL structures or unfamiliar TLDs like .xyz or .cc
Lack of HTTPS security on sites claiming to be secure

How to Protect Yourself

1 Verify URLs carefully before interacting
2 Enable multi-factor authentication on your wallet
3 Never share your private key or seed phrase
4 Regularly check transaction histories for unauthorized activity
5 Use official wallet apps and browser extensions

Frequently Asked Questions

What is Solana Drainer?
Solana Drainer refers to phishing attacks targeting Solana wallet users to steal funds by tricking them into revealing sensitive credentials.
How much money has been stolen through Solana Drainer?
Millions have been lost, with notable cases like the Phantom Wallet Breach resulting in a $2 million loss.
How do I protect myself from Solana Drainer?
Stay vigilant by verifying URLs, using multi-factor authentication, and never sharing your private keys.
What should I do if I'm a victim of Solana Drainer?
Report the incident to authorities and your wallet provider immediately, and attempt to trace unauthorized transactions.
Data sourced from PhishDestroy threat intelligence database — 2,168 domains tracked for this threat type
Solana Drainer — Threat Intelligence Smart Contract Active Threat
solana.com (official)
2,168
Domains
537
Alive
1,554
Taken Down
5.2
Avg VT
24.8%
Alive Rate
94.2%
Detected
Since Mar 2024 860 domains with VT ≥ 5
Solana Drainer 2,168 domains
ab.sol-lib.cc
21 VTUnknownPhantom Wallet
event-coinbase.fun
20 VTUnknowncoinbase
phantomairdrop.com
20 VTCF BannedPhantom
aa.solcenter.cc
19 VTUnknownacross
claimmyreward.live
19 VTCF Bannedfoundation
jup-v2.com
19 VTUnknownJupiter
phantom.solunion.cc
19 VTUnknownPhantom
raydiumsolutions.xyz
19 VTUnknownceler
seeker-mobile.net
19 VTCF BannedSolana
solanasolutions.fun
19 VTUnknownSolana
coinmultiwallet.com
18 VTLivediscord
debank.com-en-us.network
18 VTLivedebank
go-bfscheck.live
18 VTLiveceler
phantom-wallet.to
18 VTUnknownPhantom
phantomsoftwares.site
18 VTLivePhantom
phanton.pro
18 VTUnknownacross
pp.solcenter.cc
18 VTUnknownPhantom Wallet
ppp.solshelter.cc
18 VTUnknownacross
raydium-solana.network
18 VTCF BannedSolana
sol-reward.icu
18 VTUnknownacross
vaultbenefits.net
18 VTUnknownsolana
web-phantoms.app
18 VTUnknownPhantom
app-solstice.com
17 VTLiveacross
jupbox.net
17 VTUnknownjupiter
phan.solcenter.cc
17 VTUnknownPhantom Wallet
phantomvoted.com
17 VTUnknownPhantom Wallet
receipt526823.rest
17 VTUnknownPhantom
sol-incinerator.tax
17 VTUnknownsolana
solflaredesk.com
17 VTUnknownSolflare
sols-drops.com
17 VTUnknownSolana
abb.soluniverse.cc
16 VTCF Bannedacross
airtm.solunion.cc
16 VTUnknownSolana
alpha-solana.com
16 VTUnknownSolana
app.web-phantom.to
16 VTUnknownPhantom
blocksmartwallet.live
16 VTUnknownJupiter
dappsolchain.com
16 VTUnknownceler
derpo.icu
16 VTUnknownacross
financialnetwork.live
16 VTUnknownRaydium
jup-yt.live
16 VTLivejupiter
jupiterchecker.us
16 VTUnknownjupiter
jupiterdis.solhq.cc
16 VTUnknownJupiter
jupjhot.icu
16 VTUnknownacross
pancakeswapsfi.org
16 VTUnknownPancakeSwap
phanbust.live
16 VTUnknownphantom
planet.solhq.cc
16 VTUnknownSolana
refundyoursol.world
16 VTLivebinance
return.solcenter.cc
16 VTUnknownSolana
solgoblin.world
16 VTUnknownacross
spin.solgalaxy.cc
16 VTUnknownSolana
visionfundsfindept.com
16 VTUnknown
wowcoin.bet
16 VTLiveacross
zypha.xyz
16 VTUnknown1inch
based.soldex.trade
15 VTUnknownrevolut
blockchain-network.live
15 VTLiveBlockchain.com
bullishcoin.solhq.cc
15 VTUnknownSolana
coin.solgalaxy.cc
15 VTUnknown
cooldece.com
15 VTUnknownPhantom
dappportal.live
15 VTCF Bannedbinance
dappsol.live
15 VTUnknownRaydium
events-samara.fun
15 VTUnknownsolana
events-whalefloki.fun
15 VTUnknownrevolut
jup-promo.org
15 VTUnknownjupiter
jupiter.ag-live.info
15 VTUnknownJupiter
jupiter.sol-alliance.cc
15 VTCF BannedJupiter
jupiter.solgalaxy.icu
15 VTUnknownJupiter
juppromotion.com
15 VTLivejupiter
luna.solhq.cc
15 VTUnknownSolana
pancakeswap-dex.com
15 VTUnknownPancakeSwap
pbantom.com
15 VTUnknowninstagram
phantomgift.world
15 VTUnknownPhantom
pixelguild-game.run
15 VTLivePump.fun
raydiumsofficialreward.xyz
15 VTLivephantom
register-grandma.fun
15 VTUnknownminecraft
rpcresolvernode.com
15 VTUnknown1inch
russiamothertest.icu
15 VTUnknownJupiter
sol-fast.lol
15 VTLivediscord
solana-2025.today
15 VTUnknownSolana
solclaim.cloud
15 VTUnknownacross
solmultichain.com
15 VTUnknownRaydium
solquantlab.top
15 VTLiveSolana
succesadevsolanaclu.pages.dev
15 VTLiveSolana
texitcointxc.org
15 VTUnknown1inch
trumpsnew.life
15 VTUnknownSolana
trumpsolana.org
15 VTLiveSolana
webresolvvsol.xyz
15 VTUnknownSolana
2pigger.soldex.trade
14 VTUnknownsolana
air.sol-union.cc
14 VTUnknownsolana
air.solhq.cc
14 VTUnknownSolana
amlbotchecks.com
14 VTLivebitget
authenticatedlive.xyz
14 VTUnknownsolana
bifrostwallss.pages.dev
14 VTLiveacross
bybitrewards.digital
14 VTLiveBybit
claim-reward0.pages.dev
14 VTLiveSolana
fartcoin-promo.com
14 VTCF BannedPump.fun
flip.sol-galaxy.cc
14 VTLivejito
fortunawhee.sol-galaxy.cc
14 VTUnknownsolana
geraslot.world
14 VTCF BannedSolana
hypernetwork.live
14 VTUnknownfoundation
join-hajimi.xyz
14 VTUnknownacross
join-xmas.xyz
14 VTUnknownrevolut
1 2 3 4 Next » Page 1 of 22