solaxy-airdrope[.]io
“solaxy-airdrope.io | 521: Web server is down”
solaxy-airdrope.io — 未验证. 品牌冒充:Solana; 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 2/91 (alphaMountain.ai, Gridinsoft); 4 external blocklist matches; PhishDestroy score 82/100. 注册商: PDR.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain solaxy-airdrope.io was registered on February 21, 2026 and is currently listed as active with a high risk rating. It is explicitly targeting the Solana brand by employing an airdrop‑related scam kit, and its page title presently returns a 521 Web server down message, indicating that the underlying service is experiencing connectivity issues.
Infrastructure analysis shows the domain resolves to the IP address 15.197.240.20, which is hosted within an AWS Global Accelerator node in Canada. The name servers are andy.ns.cloudflare.com and elle.ns.cloudflare.com, confirming that the domain is fronted by Cloudflare and is capable of serving HTTP/3 traffic. The HTTP response code observed is 200, suggesting that the server is delivering content despite the 521 title message.
Threat indicators reinforce the malicious intent. The domain is flagged by multiple blocklists, including PhishDestroy, ScamSniffer, Polkadot, Enkrypt, and Codeesura, and appears on five security blocklists overall. VirusTotal analysis shows that 2 out of 95 security vendors have flagged the domain as malicious, while Gridinsoft assigns it a trust score of 0 out of 100. These signals, combined with the known use of an airdrop scam kit, confirm that the site is being leveraged for cryptocurrency‑related deception.
Defenders should proactively block the domain and its associated IP address at perimeter and endpoint layers. Continuous monitoring of the Cloudflare name servers and the AWS Global Accelerator endpoint is recommended to detect any changes in hosting or content delivery. Given the high‑risk classification and active status, security teams should also update threat intelligence feeds to include solaxy-airdrope.io and consider sharing the indicators with peer organizations to mitigate further propagation of the impersonation campaign.
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
所用技术 · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 置信度 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 置信度 100%VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。