solairdrops-qu[.]netlify[.]app
solairdrops-qu.netlify.app — 内容不可用. 品牌冒充:Airdrop Scam; 诈骗类型:Crypto Drainer. 证据摘要: VirusTotal 0/91; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 68/100. 注册商: Netlify.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
solairdrops-qu.netlify.app is currently listed as an active crypto‑drainer infrastructure. The domain resolves to the IPv4 address 63.176.8.218 and is hosted on Netlify’s platform, as indicated by the registrar information. Netlify’s default nameserver data is unavailable (NS_NOT_FOUND), which is typical for sites deployed on the service. The domain has been added to a single security blocklist and is also flagged by the PhishDestroy community blocklist, confirming that at least one independent threat‑intelligence source has observed malicious activity associated with it.
VirusTotal reports that the domain was submitted to 91 scanning engines; none of the engines raised a detection at the time of analysis, but the report explicitly notes that a lack of detections does not constitute evidence of safety. No additional public threat‑intel feeds such as OTX or Google Safe Browsing have been cited for this indicator. The page title, SSL certificate details, HTTP response codes, and any brand‑specific impersonation cues have not been disclosed, leaving the exact visual or functional characteristics of the site unknown. Consequently, analysts cannot confirm which legitimate service or cryptocurrency wallet the drainer may be targeting.
Defenders should continue to block traffic to 63.176.8.218 and to the fully qualified domain name, monitor DNS queries for the domain, and incorporate the indicator into existing phishing‑ and malware‑filtering rules. Because the infrastructure is hosted on a shared cloud provider, any remediation effort should include coordination with Netlify’s abuse contact to request takedown or remediation. Ongoing observation is recommended to capture any changes in page content, additional host resolution, or new detections from scanning vendors.
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 4 identified
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com 置信度 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 置信度 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 置信度 100%VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of solairdrops-qu.netlify.app · checked Jul 23, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。