Domain Security Reports

Search our database of flagged domains. Check if a website is a scam, phishing, or legitimate.

0
Total Tracked
0
Detected
0
Content Alive
0
Content Dead
0
VT Pending
Solana Drainer
CRITICAL THREAT

Understanding and Combating Solana Drainer Threats

Solana Drainer threats pose a critical risk with 1,323 domains tracked and 184 currently active. PhishDestroy insights reveal top TLDs and registrars involved.

2,172
Domains Detected
CRITICAL
Threat Level

How This Attack Works

Solana Drainer threats exploit vulnerabilities in Solana's crypto ecosystem to steal funds. Understanding their operation is crucial for prevention.

STEP 1
Target Identification
Attackers identify potential victims through phishing emails and fake websites.
STEP 2
Phishing Execution
Victims are lured to malicious sites mimicking legitimate platforms, like phantomairdrop.com.
STEP 3
Credential Harvesting
Once on the fake site, victims input sensitive information, believing it to be secure.
STEP 4
Fund Drainage
Attackers utilize harvested credentials to access wallets and drain funds via illicit transactions.

Technical Analysis

Solana Drainer attacks leverage phishing techniques to exploit the Solana blockchain. Attackers often create copycat websites using top TLDs such as .com, .xyz, and .cc, with domains hosted by registrars like Cloudflare, Inc. and PDR Ltd. These sites employ deceptive JavaScript and HTML code to mimic legitimate interfaces, tricking users into entering their private keys or seed phrases. Once credentials are obtained, attackers interact with the Solana blockchain via RPC calls to execute unauthorized transactions. The usage of smart contract functions like `transfer` and `approve` allows attackers to swiftly move funds out of victims' accounts. The infrastructure often involves a network of proxy servers to obfuscate the origin of the attack and make tracing back to the perpetrators difficult.

Real Cases

Phantom Wallet Breach (2023)
$2 million stolen
Attackers created a fraudulent Phantom wallet site to harvest user credentials, resulting in a $2 million theft.
SolUnion Scam (2024)
$1.5 million stolen
Using the domain phantom.solunion.cc, scammers executed a sophisticated phishing attack, stealing $1.5 million in SOL.
VaultBenefits Exploit (2024)
$3 million stolen
A fake airdrop campaign via vaultbenefits.net led to credential compromise and a subsequent $3 million drain.

How to Detect

Unsolicited emails or messages offering free SOL or airdrops
Websites with slight misspellings of legitimate names
Requests for private keys or seed phrases
Suspicious URL structures or unfamiliar TLDs like .xyz or .cc
Lack of HTTPS security on sites claiming to be secure

How to Protect Yourself

1 Verify URLs carefully before interacting
2 Enable multi-factor authentication on your wallet
3 Never share your private key or seed phrase
4 Regularly check transaction histories for unauthorized activity
5 Use official wallet apps and browser extensions

Frequently Asked Questions

What is Solana Drainer?
Solana Drainer refers to phishing attacks targeting Solana wallet users to steal funds by tricking them into revealing sensitive credentials.
How much money has been stolen through Solana Drainer?
Millions have been lost, with notable cases like the Phantom Wallet Breach resulting in a $2 million loss.
How do I protect myself from Solana Drainer?
Stay vigilant by verifying URLs, using multi-factor authentication, and never sharing your private keys.
What should I do if I'm a victim of Solana Drainer?
Report the incident to authorities and your wallet provider immediately, and attempt to trace unauthorized transactions.
Data sourced from PhishDestroy threat intelligence database — 2,172 domains tracked for this threat type
Solana Drainer — Threat Intelligence Smart Contract Active Threat
solana.com (official)
2,172
Domains
541
Alive
1,554
Taken Down
5.2
Avg VT
24.9%
Alive Rate
94.1%
Detected
Since Mar 2024 860 domains with VT ≥ 5
Solana Drainer 2,172 domains
jup-agf.world
14 VTUnknownJupiter
jup-newera.live
14 VTUnknownjupiter
jup.cash
14 VTUnknownjupiter
jupairdrop.onspace.build
14 VTUnknownAirdrop Scam
onecore.world
14 VTUnknownfoundation
panducoin.com
14 VTLiveCoinbase
penguinsgive.com
14 VTUnknownsolana
pepeheimer-claim.com
14 VTLive1inch
phantomgame339.top
14 VTUnknownPhantom
q111.solcenter.cc
14 VTUnknownSolana
raydium-concentrated.world
14 VTCF Bannedceler
rectifywallet.click
14 VTCF Banned
sol-incineratr.com
14 VTLivediscord
sol-inclnerator.net
14 VTUnknownsolana
sol.sol-planet.cc
14 VTUnknownjupiter
solanamixer.top
14 VTUnknownSolana
solflarewebwallet.com
14 VTLiveSolflare
solrefixcredit.world
14 VTUnknownsolana
swiftsoldapp.live
14 VTUnknowndiscord
trumpclaim.sol-node.cc
14 VTUnknownSolana
vote-moonshots.info
14 VTUnknownceler
voucher.solhq.cc
14 VTUnknownfoundation
walletappsync.firebaseapp.com
14 VTUnknownBase
ybhww.cc
14 VTUnknownSolana
32113.one
13 VTUnknown
38010.lgbt
13 VTUnknownSolana
53140.tax
13 VTUnknownSolana
58035.tax
13 VTUnknownSolana
airdropclaim-monad.xyz
13 VTUnknownSolana
claimsolana.world
13 VTUnknownSolana
cryptorecoverysystem.com
13 VTUnknown
hyperfound.org
13 VTUnknownPhantom
jitofund.xyz
13 VTUnknownacross
jup-new.live
13 VTUnknownjupiter
jupairdrop.onspace.app
13 VTUnknownSolana
jupiter-bot.lol
13 VTUnknownJupiter
jupiter.ag-us.live
13 VTUnknownJupiter
lawalex.cc
13 VTCF BannedPhantom Wallet
lunanew.solhq.cc
13 VTUnknownSolana
memeairdrop.net
13 VTUnknownSolana
meteorapp.org
13 VTLiveacross
multichainssol.live
13 VTUnknownRaydium
multiply-solan.com
13 VTUnknownSolana
niggacz-claim.top
13 VTUnknownsolana
nodnagakyc.cc
13 VTLive
nowsolcoin.com
13 VTUnknownsolana
nvda-event.solshelter.cc
13 VTUnknownAirdrop Scam
okx-listing-x1.vercel.app
13 VTUnknownOKX
pengy-sol.org
13 VTUnknownsolana
phantomwallets.blogspot.co.at
13 VTUnknownPhantom
pudgypienguins.com
13 VTLivediscord
pumpswap.digital
13 VTUnknowndiscord
punchtoken.org
13 VTUnknownOKX
raydium-protocol.xyz
13 VTUnknownRaydium
raydiumreward.xyz
13 VTUnknownceler
rewards.sol-galaxy.cc
13 VTUnknown
smartnodedapp.click
13 VTUnknownJupiter
solanaairdropofficial.com
13 VTUnknownSolana
solanavm-eov.pages.dev
13 VTLivesolana
solxjup.onspace.app
13 VTUnknownJupiter
swcfundcoin-airdrop.live
13 VTLive1inch
trumpworldliberty.com
13 VTUnknownBinance
vhqck.work
13 VTUnknownSolana
vwa.x-co.in
13 VTUnknownsolana
wlfi-drop.fun
13 VTUnknownrevolut
www-berts.network
13 VTLivesolana
www.sol-galaxy.cc
13 VTLivecurve
www.solanaskr.com
13 VTUnknownSolana
66362.tax
12 VTUnknownSolana
78418.tax
12 VTUnknownSolana
84563.club
12 VTUnknownSolana
90197.tax
12 VTUnknownSolana
air.solgalaxy.cc
12 VTUnknownSolana
billy.allocportal.icu
12 VTLiveacross
breakpoint.onspace.app
12 VTUnknownSolana
claim-nanj.click
12 VTUnknownacross
claim-phantom.com
12 VTUnknownPhantom
claims-tiktok.xyz
12 VTUnknownrevolut
crydex.solplanet.cc
12 VTUnknownfoundation
dappmirror.web.app
12 VTUnknownSolana
deadguy.soldex.trade
12 VTUnknownsolana
deep-sols.com
12 VTUnknownsolana
develop-neon-solana-signature-demo.neontest.xyz
12 VTLiveSolana
events-1coin.xyz
12 VTLivesolana
ice.solhq.cc
12 VTUnknownSolana
jitoback.com
12 VTLiveacross
jitofund.com
12 VTUnknownacross
join-xerisol.xyz
12 VTUnknownsolana
jup-token.world
12 VTCF BannedJupiter
jupboost.cc
12 VTLivejupiter
jupiterchecker.top
12 VTUnknownjupiter
jupiterchristmas.top
12 VTUnknownJupiter
juppiter.cc
12 VTUnknownJupiter
look.soldex.trade
12 VTUnknownrevolut
met.allocation.live
12 VTUnknownsolana
metaora.eu
12 VTLivejito
metcoin.run
12 VTUnknownacross
mete0ra.xyz
12 VTUnknownrevolut
meteora-ag.tech
12 VTLiveacross
multidapps.webspro.xyz
12 VTUnknownsolana
« Prev 1 2 3 4 5 Next » Page 2 of 22