Domain Security Reports

Search our database of flagged domains. Check if a website is a scam, phishing, or legitimate.

0
Total Tracked
0
Detected
0
Content Alive
0
Content Dead
0
VT Pending
Solana Drainer
CRITICAL THREAT

Understanding and Combating Solana Drainer Threats

Solana Drainer threats pose a critical risk with 1,323 domains tracked and 184 currently active. PhishDestroy insights reveal top TLDs and registrars involved.

2,175
Domains Detected
CRITICAL
Threat Level

How This Attack Works

Solana Drainer threats exploit vulnerabilities in Solana's crypto ecosystem to steal funds. Understanding their operation is crucial for prevention.

STEP 1
Target Identification
Attackers identify potential victims through phishing emails and fake websites.
STEP 2
Phishing Execution
Victims are lured to malicious sites mimicking legitimate platforms, like phantomairdrop.com.
STEP 3
Credential Harvesting
Once on the fake site, victims input sensitive information, believing it to be secure.
STEP 4
Fund Drainage
Attackers utilize harvested credentials to access wallets and drain funds via illicit transactions.

Technical Analysis

Solana Drainer attacks leverage phishing techniques to exploit the Solana blockchain. Attackers often create copycat websites using top TLDs such as .com, .xyz, and .cc, with domains hosted by registrars like Cloudflare, Inc. and PDR Ltd. These sites employ deceptive JavaScript and HTML code to mimic legitimate interfaces, tricking users into entering their private keys or seed phrases. Once credentials are obtained, attackers interact with the Solana blockchain via RPC calls to execute unauthorized transactions. The usage of smart contract functions like `transfer` and `approve` allows attackers to swiftly move funds out of victims' accounts. The infrastructure often involves a network of proxy servers to obfuscate the origin of the attack and make tracing back to the perpetrators difficult.

Real Cases

Phantom Wallet Breach (2023)
$2 million stolen
Attackers created a fraudulent Phantom wallet site to harvest user credentials, resulting in a $2 million theft.
SolUnion Scam (2024)
$1.5 million stolen
Using the domain phantom.solunion.cc, scammers executed a sophisticated phishing attack, stealing $1.5 million in SOL.
VaultBenefits Exploit (2024)
$3 million stolen
A fake airdrop campaign via vaultbenefits.net led to credential compromise and a subsequent $3 million drain.

How to Detect

Unsolicited emails or messages offering free SOL or airdrops
Websites with slight misspellings of legitimate names
Requests for private keys or seed phrases
Suspicious URL structures or unfamiliar TLDs like .xyz or .cc
Lack of HTTPS security on sites claiming to be secure

How to Protect Yourself

1 Verify URLs carefully before interacting
2 Enable multi-factor authentication on your wallet
3 Never share your private key or seed phrase
4 Regularly check transaction histories for unauthorized activity
5 Use official wallet apps and browser extensions

Frequently Asked Questions

What is Solana Drainer?
Solana Drainer refers to phishing attacks targeting Solana wallet users to steal funds by tricking them into revealing sensitive credentials.
How much money has been stolen through Solana Drainer?
Millions have been lost, with notable cases like the Phantom Wallet Breach resulting in a $2 million loss.
How do I protect myself from Solana Drainer?
Stay vigilant by verifying URLs, using multi-factor authentication, and never sharing your private keys.
What should I do if I'm a victim of Solana Drainer?
Report the incident to authorities and your wallet provider immediately, and attempt to trace unauthorized transactions.
Data sourced from PhishDestroy threat intelligence database — 2,175 domains tracked for this threat type
Solana Drainer — Threat Intelligence Smart Contract Active Threat
solana.com (official)
2,175
Domains
537
Alive
1,561
Taken Down
5.2
Avg VT
24.7%
Alive Rate
94%
Detected
Since Mar 2024 860 domains with VT ≥ 5
Solana Drainer 2,175 domains
xprom.xyz
3 VTLiveacross
xpump.sbs
3 VTUnknownrevolut
xtrialsolana.xyz
3 VTUnknownSolana
yurucoinmigration.xyz
3 VTUnknown
zcash-foundation.com
3 VTUnknownCoinbase
zebec.events
3 VTUnknownsolana
zrealcoin.com
3 VTUnknownsignal
12783.my
2 VTUnknownSolana
92493.my
2 VTUnknownSolana
aestheticsolana.xyz
2 VTUnknownSolana
aeyakovenko.fun
2 VTUnknownrevolut
ahamv.my
2 VTUnknownSolana
airdrop-drapertv.com
2 VTUnknownacross
airdrop.boundlless.digital
2 VTUnknownAirdrop Scam
airug.online
2 VTLiveSolana
ajdban.org
2 VTUnknownSolana
aliens.pumpcheck.cfd
2 VTUnknown
allocation-bonk.fun
2 VTLiveSolana
allsolanawallethelp.pages.dev
2 VTLiveSolana
amlguard.check4secure.com
2 VTLiveacross
amlsolana.org
2 VTUnknownSolana
angrybagsolana.com
2 VTUnknownSolana
app-phantom-oi.pages.dev
2 VTLivePhantom
app.heemi.run
2 VTLiveSolana
auth-collabbot.com
2 VTUnknown
avicichain.run
2 VTLivephantom
avicimkt.world
2 VTUnknownrevolut
axiom.bond
2 VTLiveacross
axiomx.trade
2 VTUnknownacross
badgersolana.xyz
2 VTUnknownSolana
bathroom.web-hub.cc
2 VTUnknownrevolut
bebift.com
2 VTLiveacross
bestsolanavolumebot.com
2 VTUnknownSolana
beta-diamondhands.com
2 VTUnknownSolana
bigdrop.sol-community.cc
2 VTUnknownsolana
bitgateportal.com
2 VTLivebitget
bitgetsolana.xyz
2 VTCF BannedSolana
blackbull-events.com
2 VTUnknownacross
bn-litigation.info
2 VTLiveledger
bonk-distribution.fun
2 VTUnknownsolana
bonk-sol.com
2 VTLiveSolana
bonkair.life
2 VTCF Bannedbitget
bonkkoins.com
2 VTUnknownrevolut
booking-welcomebox.digital
2 VTLiveBooking
boomxxx.biz
2 VTUnknownSolana
bovr8d.cc
2 VTLivegoogle
bpack.fun
2 VTUnknownbackpack
bridgersapptech.pages.dev
2 VTLive1inch
bsd-ambalaj.com
2 VTUnknownSolana
bubblegumkids.xyz
2 VTLiveSolana
bumpit.bond
2 VTLiveacross
burnitlive.app
2 VTLiveSolana
burnsol.digital
2 VTUnknownsolana
calabitrade.com
2 VTLivedextools
calvindrop.top
2 VTUnknownacross
cap-claim.live
2 VTUnknownsolana
cashback.padretrade.fun
2 VTUnknownsolana
catmigration.world
2 VTUnknown
chicken-event.fun
2 VTUnknownrevolut
chinasolx.com
2 VTUnknownsolana
chinesesolana.lol
2 VTUnknownSolana
claim-now.store
2 VTUnknownSolana
claim-pump.click
2 VTLiverevolut
claim.bonkcoin.info
2 VTUnknownsolana
claim.solanamobile.cv
2 VTUnknownSolana
claim.switchboards.digital
2 VTUnknownacross
codecs.network
2 VTUnknownsolana
coincap.lol
2 VTUnknownacross
connect-wallet.digital
2 VTUnknownSolana
cope.web3sol.xyz
2 VTUnknownrevolut
corgisolana.xyz
2 VTLiveSolana
cpnfc.my
2 VTUnknownSolana
cupseytools.com
2 VTLiveSolana
dankze.cloud
2 VTUnknownsolana
dappaccess.firebaseapp.com
2 VTUnknownSolana
dazedex.com
2 VTLivecsgo
defituna.life
2 VTUnknownsolana
delaunch.top
2 VTUnknowndiscord
destablecoin.live
2 VTUnknownSolana
dexemojibot.fun
2 VTLivedexscreener
dexscreener.sbs
2 VTUnknownSolana
dexvotex.live
2 VTUnknownacross
dfdrop.cfd
2 VTUnknownPump.fun
dio.allocation.finance
2 VTLiverevolut
disclaimer.unchainedsol.com
2 VTLiveacross
donald-coin-air.world
2 VTUnknownphantom
donald-coin.com
2 VTUnknownceler
dont.coincap.click
2 VTUnknownAirdrop Scam
doraemonsolana.org
2 VTUnknownSolana
dowgeofsolana.net
2 VTUnknownSolana
drop-pippin.top
2 VTUnknownrevolut
drop67.fun
2 VTUnknownacross
dropsbot.lol
2 VTUnknownacross
dropsol.web-hub.cc
2 VTUnknownsolana
eaimigration.world
2 VTLivesolana
easyrugs.top
2 VTLivephantom
elontoysonsolana.net
2 VTUnknownSolana
epstein-event.fun
2 VTUnknownrevolut
event-1ly.fun
2 VTUnknownrevolut
event-alone.fun
2 VTUnknownrevolut
« Prev 11 12 13 14 15 16 17 Next » Page 14 of 22