lunariswavebk[.]com[.]stableprimeinv[.]org
“Home - LunarisWaveBk”
lunariswavebk.com.stableprimeinv.org — مغطى بعباءة · يمكن الوصول إليه (HTTP 502). نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 6/91 (ADMINUSLabs, alphaMountain.ai, CRDF, Fortinet, Netcraft); URLQuery 1 alert; cloaking observed; PhishDestroy score 93/100. مسجّل النطاق: Ultahost.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Lunariswavebk.com.stableprimeinv.org is a phishing domain that employs cloaking techniques to evade detection. It presents benign content to security scanners, earning a cloaking score of 2/10. Despite these evasive measures, 4 out of 91 VirusTotal vendors have flagged it as malicious, indicating its potential threat to users.
The domain is registered through Ultahost, Inc. and is hosted on an IP address located in Germany, under the same organization. This setup suggests a coordinated effort to maintain anonymity and evade detection. The domain's SSL certificate is issued by Let's Encrypt, a common choice for malicious actors due to its automated and free issuance process.
PhishDestroy added this domain to its blocklist after first detecting it on June 22, 2026. The early detection highlights the effectiveness of PhishDestroy's pipeline, which identifies threats during the critical 24-72 hour window before they propagate to antivirus databases. With only one public blocklist entry, this domain remains under the radar, emphasizing the importance of proactive threat intelligence.
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | lunariswavebk.com.stableprimeinv.org |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
Registration: stableprimeinv.org
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain stableprimeinv.org behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
الأدلة والتقارير الخارجية
PD-20260622-9B718E Recipient: abuse@first-colo.net هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب