# publicsale-toby.lat — SUSPICIOUS > Discover the safety status of publicsale-toby.lat, a suspicious domain linked to a token sale. Learn about its phishing risk and offline status. ## Summary PhishDestroy identifies publicsale-toby.lat as a low-risk generic phishing domain associated with a purported token sale named "Toby Token Sale." The domain's registration date is March 13, 2026, and it is registered through PDR Ltd. d/b/a PublicDomainRegistry.com. The site is classified based on its phishing nature, aiming to deceive users into providing sensitive information under the guise of a public token sale. Technically, publicsale-toby.lat resolves to the IP address 188.114.97.3 and appears on three separate security blocklists, indicating some level of suspicion among threat intelligence sources. VirusTotal analysis shows that 2 out of 95 security vendors flagged this domain, contributing to its classification as potentially harmful. The domain's infrastructure and indicators align with typical phishing setups, including a recently created domain and association with cryptocurrency-related scams. Currently, publicsale-toby.lat is taken offline, which mitigates immediate risk to users. Its removal from active service reflects a responsive action to its detection and classification. Users encountering communications or links related to this domain should avoid interaction, as it was designed to mislead users in a token sale context. PhishDestroy recommends continued monitoring for any reactivation or related phishing campaigns utilizing similar infrastructure. ## Threat Details - Verdict: SUSPICIOUS - Site status: dead (HTTP 404) - Page title: Toby Token Sale ## Domain Intelligence - Registered: 2026-03-13 01:07:02 - Registrar: PDR Ltd. d/b/a PublicDomainRegistry.com - Country: IN - IP: 188.114.97.3 - IP Country: US - IP City: San Francisco - IP Org: AS13335 Cloudflare, Inc. - Nameservers: amos.ns.cloudflare.com maya.ns.cloudflare.com - SSL Issuer: Let's Encrypt / E7 ## Detection Status - VirusTotal: 2 vendors flagged Vendors: ["LevelBlue", "SOCRadar"] - Google Safe Browsing: clean - Blocklists: 3 hits Lists: ["PhishDestroy", "MetaMask", "SEAL"] ## Evidence - Screenshot: https://urlscan.io/screenshots/019ce489-0884-73fa-836f-06b19e4b18a0.png - Cloudflare Radar: https://radar.cloudflare.com/scan/2739d89a-2ae6-4d17-8797-42194d4eaa0d - PhishDestroy: https://phishdestroy.io/domain/publicsale-toby.lat/ - LLM endpoint: https://phishdestroy.io/domain/publicsale-toby.lat/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/publicsale-toby.lat/ Last updated: 2026-03-19