http://solairdrops-mh.netlify.app/HTTP 404
3.1 KB
1.4 KB
0 internal · 1 external
Content-Type: text/htmlServer: NetlifyAll stored response-header names (5)
Content-TypeDateServerX-Nf-Request-IdTransfer-Encodingsolairdrops-mh.netlify.app — Контент недоступний. Уособлення бренду: Airdrop Scam; Тип шахрайства: Airdrop Scam. Зведення доказів: VirusTotal 0/91; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Реєстратор: Netlify.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, solairdrops-mh.netlify.app, is currently under investigation as a crypto drainer phishing site. As of July 29, 2026, the domain remains active and is hosted on Netlify infrastructure, resolving to IP address 63.176.8.218. Infrastructure analysis reveals the domain lacks configured nameservers, a potential indicator of ephemeral or misconfigured hosting often associated with malicious campaigns. The domain appears on one security blocklist and is actively blocked by PhishDestroy, though no detections were reported by the 91 vendors that scanned it on VirusTotal.
The absence of detections does not confirm safety, particularly given the domain's presence on a blocklist and its classification as a crypto drainer. Defenders should note that the domain's hosting provider, Netlify, is a legitimate platform frequently abused for phishing due to its ease of deployment and free tier. The IP address 63.176.8.218 may host additional malicious domains, warranting further investigation into associated infrastructure. While the exact content of the site has not been analyzed, the classification as a crypto drainer suggests it is designed to target cryptocurrency wallets, likely through deceptive airdrop or giveaway schemes.
Organizations should treat this domain as high-risk and implement blocking measures at the network and endpoint levels. Monitoring for related domains or subdomains under the netlify.app namespace is recommended, as attackers often rotate through similar infrastructure. No additional brand or kit details are available at this time, and further analysis is required to determine the full scope of the threat.
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіGoogle PageSpeed Insights — mobile performance audit of solairdrops-mh.netlify.app · checked Jul 29, 2026
Timestamped response metadata retained by the local collection pipeline. Each value below belongs to the displayed archive time.
http://solairdrops-mh.netlify.app/Content-Type: text/htmlServer: NetlifyContent-TypeDateServerX-Nf-Request-IdTransfer-EncodingЯкщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразДодавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиОстанні звіти про фішинг і помічені зміни доступності
ВідстежуватиСлідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога