# offerup.lzjk120.com — SUSPICIOUS > Domain offerup.lzjk120.com impersonates OfferUp in phishing attacks. 0/95 VirusTotal detections. Review the full report for IOCs. ## Summary offerup.lzjk120.com carries a medium risk as a generic phishing domain. The domain was registered through Gname.com Pte. Ltd., resolved to IP 188.114.97.3, and created on April 14, 2018. It holds a Let's Encrypt SSL certificate and remains undetected on VirusTotal with 0/95 flagged engines. This domain mimics OfferUp, a popular online marketplace, to harvest user credentials. Its age and clean VT score suggest either low activity or evasion tactics. Block the domain at the network level and update email/web filters to flag offerup.lzjk120.com. Warn users about fake OfferUp pages offering suspicious deals. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2018-04-14 03:51:25 - Registrar: Gname.com Pte. Ltd. - IP: 188.114.97.3 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/bb4d3b78-5407-4696-b6ce-f8dc65f99202 - PhishDestroy: https://phishdestroy.io/domain/offerup.lzjk120.com/ - LLM endpoint: https://phishdestroy.io/domain/offerup.lzjk120.com/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/offerup.lzjk120.com/ Last updated: 2026-03-21