Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@cyberfolks.ro.
The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
solanamobile[.]nastacafe[.]ro
“SKR Airdrop Claim | Solana Mobile”
solanamobile.nastacafe.ro — 未验证. 品牌冒充:Backpack; 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 13/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); 1 external blocklist match (ScamSniffer); PhishDestroy score 89/100. 注册商: CYBER_FOLKS S.R.L.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This site, registered on 2026-02-21 as solanamobile.nastacafe.ro, is a cryptocurrency scam. It impersonates the brand backpack and claims to be "SKR Airdrop Claim | Solana Mobile," posing a threat to users seeking to claim a fraudulent airdrop. The site aims to trick visitors into connecting wallets or providing credentials, leading to potential financial theft.
Technical analysis shows 5 out of 95 VirusTotal vendors flagged the site as malicious. It is hosted on IP 176.223.123.244 in Romania, associated with AS44043 Cyber_Folks SRL, and registered through CYBER_FOLKS S.R.L. The site lacks an SSL certificate and uses nameservers ns1.cyberfolks.ro, ns2.cyberfolks.ro, ns3.cyberfolks.ro, and ns4.cyberfolks.ro. It is flagged by Fortinet, Google Safebrowsing, Gridinsoft, Lionic, and SOCRadar, and appears on 4 blocklists.
The site is currently down or offline. With a DOM risk score of 25, it represents a moderate threat level, though its inactive status mitigates immediate risk to users.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
存档证据
网站配置分析
证据与外部报告
PD-20260128-398D1D Recipient: abuse@cyberfolks.ro 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。