sushi-solx[.]xyz
“恭喜,站点创建成功!”
sushi-solx.xyz — 内容不可用 (HTTP 502). 品牌冒充:SushiSwap; 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 2/93 (Forcepoint ThreatSeeker, Trustwave); PhishDestroy score 56/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain sushi-solx.xyz was registered on February 21, 2026 and is presently taken offline. Analysis indicates it is being used to impersonate the SushiSwap brand in a crypto‑scam campaign, as reflected by the explicit brand target and the classification of the activity as a crypto scam. VirusTotal records show that two of ninety‑three security vendors have flagged the domain, providing early indication of malicious intent. The domain is listed on a single security blocklist and is actively blocked by the PhishDestroy service, reinforcing its reputation as a threat vector.
Infrastructure examination reveals that sushi-solx.xyz resolves to the IP address 107.172.83.150, which is hosted by AS36352 under HostPapa in the United States. The hosting provider’s location and ASN are consistent with prior observations of low‑cost, rapidly provisioned infrastructure used for short‑lived phishing or scam sites. The site presented the page title "恭喜,站点创建成功!", a Chinese phrase meaning "Congratulations, site created successfully!", suggesting the site may have been generated by an automated tool rather than manually crafted. The SSL certificate associated with the domain carries an R11 rating, indicating a low‑trust certificate, and the Gridinsoft trust score is 0 out of 100, confirming the site’s lack of credibility.
The elevated risk level assigned to the domain aligns with the observed indicators. Defenders should ensure that DNS queries for sushi-solx.xyz are blocked at the network perimeter, update web filtering and threat intelligence feeds to include the domain and its associated IP, and monitor for any residual activity that may arise from cached or replicated content. Continuous verification against reputable blocklist services and periodic re‑scanning on platforms such as VirusTotal are recommended to capture any changes in detection status.
威胁响应 Pipeline
公共封禁名单状态
取证情报
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。