sol-scope-icu-e102c9[.]pages[.]dev
“SolScope | AI-Powered Solana Wallet Analytics”
Збережене спостереження
Зафіксована відмінність заголовків
Зведення доказів
The domain sol-scope-icu-e102c9.pages.dev was identified as a brand impersonation threat targeting the Solana ecosystem. This domain posed as a legitimate analytics platform under the name 'SolScope | AI-Powered Solana Wallet Analytics', attempting to deceive users into believing it was an official Solana service. The threat type is specifically brand impersonation, with no drainer kit explicitly identified in the available intelligence, though the page title and structure strongly suggest an intent to harvest wallet credentials or private keys.
Technical analysis reveals several concerning indicators. The domain was created on April 13, 2026, a very recent registration date that aligns with phishing campaigns. It is registered through Cloudflare, Inc. and resolves to IP address 172.66.47.56. VirusTotal shows 0 out of 95 detections, meaning no security vendors have flagged it yet, which is common for newly deployed phishing pages. However, the domain appears on 3 security blocklists, indicating that some threat intelligence sources have already recognized its malicious nature. The SSL certificate is issued by Google Trust Services (WE1), a legitimate certificate authority, adding a false sense of security to visitors. The domain is currently offline, suggesting either a temporary takedown or that the attackers have moved on to another hosting.
As of the latest check, the domain is offline and no active threat is present. The response action taken appears to be a takedown, likely initiated by the hosting provider or a security service. However, because the domain was created very recently and the site went offline quickly, there remains a risk that the attackers may deploy similar domains under different names. Users should remain vigilant against any unsolicited links claiming to offer Solana wallet analytics, and always verify the authenticity of crypto-related services through official channels. If any credentials were entered on this site, they should be considered compromised and wallets should be secured immediately.
Data Coverage
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Private YARA rules | connect.sol.ms/modal?id=698635ebce553447bad1d352&parent_url=sol-scope-icu-e102c9.pages.dev%2f |
audit | Hunting_JS_WebAssembly |
| DNS4EU | connect.sol.ms |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
8 зовнішніх джерел під наглядом Збігів немає
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of sol-scope-icu-e102c9.pages.dev · checked Apr 13, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога