lbank-kor[.]com
“LBank 로그인 - 안전한 암호화폐 거래소 | LBank Login”
lbank-kor.com — لم يتم التحقق منها. نوع الاحتيال: Credential Phishing. ملخص الأدلة: VirusTotal 11/91 (alphaMountain.ai, BitDefender, CRDF, CyRadar, Forcepoint ThreatSeeker); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 85/100. مسجّل النطاق: Gname.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain, lbank-kor.com, is identified as an active cryptocurrency credential phishing site impersonating the legitimate LBank exchange platform. The site presents a fraudulent login interface titled 'LBank 로그인 - 안전한 암호화폐 거래소 | LBank Login,' designed to harvest user credentials for unauthorized access to digital asset accounts. Analysis indicates the absence of a known drainer kit, suggesting a focused credential theft operation rather than direct wallet-draining functionality. Infrastructure analysis reveals the domain was registered on June 02, 2024, through Gname.com Pte. Ltd., a registrar frequently associated with high-risk domains. The domain resolves to the IP address 186.2.175.79, hosted on infrastructure previously linked to phishing campaigns targeting financial services. As of the latest assessment, the domain is flagged by 3 out of 95 security vendors on VirusTotal, indicating limited but growing detection coverage. The SSL certificate is issued by Let's Encrypt, providing HTTPS encryption that enhances the site's appearance of legitimacy. No listings were found on Google Safe Browsing at the time of analysis, and blocklist monitoring services report minimal coverage, with fewer than five public blocklists flagging the domain. The phishing site remains active and accessible, posing a continued risk to cryptocurrency users who may mistake it for the legitimate LBank platform. Response actions by hosting providers and registrars have yet to result in takedown, likely due to delayed abuse reporting or jurisdictional challenges. The remaining risk is classified as high due to the domain's convincing mimicry of the target brand, active HTTPS encryption, and low detection rates among security engines. Users are advised to verify domain authenticity through official channels, enable multi-factor authentication on cryptocurrency accounts, and report suspicious domains to relevant security organizations for further investigation and mitigation.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of lbank-kor.com · checked Jul 6, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب