http://solairdrops-mh.netlify.app/HTTP 404
3.1 KB
1.4 KB
0 internal · 1 external
Content-Type: text/htmlServer: NetlifyAll stored response-header names (5)
Content-TypeDateServerX-Nf-Request-IdTransfer-Encodingsolairdrops-mh.netlify.app — İçerik kullanılamıyor. Marka kimliğine bürünme: Airdrop Scam; Dolandırıcılık türü: Airdrop Scam. Kanıt özeti: VirusTotal 0/91; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Kayıt kuruluşu: Netlify.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
This domain, solairdrops-mh.netlify.app, is currently under investigation as a crypto drainer phishing site. As of July 29, 2026, the domain remains active and is hosted on Netlify infrastructure, resolving to IP address 63.176.8.218. Infrastructure analysis reveals the domain lacks configured nameservers, a potential indicator of ephemeral or misconfigured hosting often associated with malicious campaigns. The domain appears on one security blocklist and is actively blocked by PhishDestroy, though no detections were reported by the 91 vendors that scanned it on VirusTotal.
The absence of detections does not confirm safety, particularly given the domain's presence on a blocklist and its classification as a crypto drainer. Defenders should note that the domain's hosting provider, Netlify, is a legitimate platform frequently abused for phishing due to its ease of deployment and free tier. The IP address 63.176.8.218 may host additional malicious domains, warranting further investigation into associated infrastructure. While the exact content of the site has not been analyzed, the classification as a crypto drainer suggests it is designed to target cryptocurrency wallets, likely through deceptive airdrop or giveaway schemes.
Organizations should treat this domain as high-risk and implement blocking measures at the network and endpoint levels. Monitoring for related domains or subdomains under the netlify.app namespace is recommended, as attackers often rotate through similar infrastructure. No additional brand or kit details are available at this time, and further analysis is required to determine the full scope of the threat.
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com %100 güvenHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org %100 güvenCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com %100 güvenHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org %100 güvenGoogle PageSpeed Insights — mobile performance audit of solairdrops-mh.netlify.app · checked Jul 29, 2026
Timestamped response metadata retained by the local collection pipeline. Each value below belongs to the displayed archive time.
http://solairdrops-mh.netlify.app/Content-Type: text/htmlServer: NetlifyContent-TypeDateServerX-Nf-Request-IdTransfer-EncodingHesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraŞüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirSon kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleCanlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin