solaxy-airdrope[.]io
“solaxy-airdrope.io | 521: Web server is down”
solaxy-airdrope.io — Неперевірений. Уособлення бренду: Solana; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 2/91 (alphaMountain.ai, Gridinsoft); 4 external blocklist matches; PhishDestroy score 82/100. Реєстратор: PDR.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain solaxy-airdrope.io was registered on February 21, 2026 and is currently listed as active with a high risk rating. It is explicitly targeting the Solana brand by employing an airdrop‑related scam kit, and its page title presently returns a 521 Web server down message, indicating that the underlying service is experiencing connectivity issues.
Infrastructure analysis shows the domain resolves to the IP address 15.197.240.20, which is hosted within an AWS Global Accelerator node in Canada. The name servers are andy.ns.cloudflare.com and elle.ns.cloudflare.com, confirming that the domain is fronted by Cloudflare and is capable of serving HTTP/3 traffic. The HTTP response code observed is 200, suggesting that the server is delivering content despite the 521 title message.
Threat indicators reinforce the malicious intent. The domain is flagged by multiple blocklists, including PhishDestroy, ScamSniffer, Polkadot, Enkrypt, and Codeesura, and appears on five security blocklists overall. VirusTotal analysis shows that 2 out of 95 security vendors have flagged the domain as malicious, while Gridinsoft assigns it a trust score of 0 out of 100. These signals, combined with the known use of an airdrop scam kit, confirm that the site is being leveraged for cryptocurrency‑related deception.
Defenders should proactively block the domain and its associated IP address at perimeter and endpoint layers. Continuous monitoring of the Cloudflare name servers and the AWS Global Accelerator endpoint is recommended to detect any changes in hosting or content delivery. Given the high‑risk classification and active status, security teams should also update threat intelligence feeds to include solaxy-airdrope.io and consider sharing the indicators with peer organizations to mitigate further propagation of the impersonation campaign.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
Технології · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога