sol[.]cryptodrop[.]xyz
“Solana”
Збережене виявлення
Виявлено маскування
- Тип маскування
content_divergence- Оцінка маскування
- 2/6
Зведення доказів
PhishDestroy identifies sol.cryptodrop.xyz as an active cryptocurrency-themed phishing domain designed to deceive users into surrendering sensitive wallet credentials or transferring digital assets. The domain mimics legitimate cryptocurrency service interfaces, such as wallet interfaces or exchange portals, to exploit trust and facilitate theft. Analysis confirms this is not a legitimate service but an impersonation attempt aimed at harvesting private keys or initiating unauthorized transactions.
This domain was flagged with 0 detections out of 95 VirusTotal engines, indicating no prior recognition by automated security systems despite its recent creation on February 12, 2026. The infrastructure is hosted on IP 188.114.96.3 and utilizes a Let’s Encrypt SSL certificate to appear legitimate. The domain is registered through Registrar of Domain Names REG.RU LLC, a common provider used by malicious actors due to low registration friction and minimal oversight. These technical indicators suggest an emerging threat undergoing active evasion tactics.
Users who have visited or interacted with sol.cryptodrop.xyz should immediately cease all communication and cease any attempted login or transaction activities. If credentials were entered, assume compromise: revoke all API keys, rotate wallet passwords, and transfer funds to a newly generated wallet address under secure control. Report the domain to your security team or via platforms like URLScan, PhishTank, or your local CERT. Block the domain at network level (DNS sinkholing) and inspect endpoint logs for signs of compromise, such as unauthorized wallet connection attempts or data exfiltration to C2 infrastructure hosted on 188.114.96.3.
Знімок надісланих доказів
- Надіслано
- Записи журналу
- 1
- ID справи
PD-20260330-0F95E1- Заголовок збереженої сторінки
- Solana
- PDF-файл
- PDF із доказами
Повний текст доказів
Policy Violations: Abuse policy + ICANN contractual obligations; phishing classified as bad-faith use in UDRP; domains may be suspended/removed
Applicable Laws: Criminal Code RF Art.159 (fraud), Art.272 (illegal access), Art.273 (malware creation), Art.274.1 (critical infrastructure interference)
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
Хронологія виявлення
-
VirusTotal
None → 1
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Registration: cryptodrop.xyz
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain cryptodrop.xyz behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of sol.cryptodrop.xyz · checked Mar 30, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога