llamaandswap[.]com
“Llamaswap”
Detección almacenada
Alerta de encubrimiento
- Tipo de encubrimiento
bot_redirect_safe- Puntuación de encubrimiento
- 4/6
Resumen de las pruebas
The domain llamaandswap.com was registered on July 23, 2025 through Dynadot LLC and is currently hosted on Cloudflare's network (AS13335, United States). DNS resolution points to the IP address 188.114.97.3 and the domain uses the nameservers eugene.ns.cloudflare.com and tiffany.ns.cloudflare.com. The site presents an HTTP 301 redirect and serves content over TLS with a Let’s Encrypt R12 certificate, employing Google Web Server, HTTP/3, and HSTS. Security scoring systems assign the domain a zero‑point trust rating (0/100) on Gridinsoft, and it appears on one external blocklist. PhishDestroy has already listed the domain as malicious. VirusTotal analysis shows that four out of ninety‑five scanning engines have flagged the domain, reinforcing the high‑risk assessment. The page title returned by the server is “Llamaswap,” and the intelligence categorizes the activity as a cryptocurrency‑related brand‑impersonation campaign targeting the “across” brand. Publicly available content beyond the title has not been captured, so the exact phishing or fraud mechanisms employed on the landing page remain unknown. No additional infrastructure such as command‑and‑control servers, payment processors, or malware drops has been observed in the current data set. The lack of visible payloads does not diminish the risk, as the domain’s primary objective appears to be brand impersonation for cryptocurrency scams. Defenders should immediately block resolution of llamaandswap.com at the DNS layer and add the IP address 188.114.97.3 to network‑level deny lists. Email security gateways should be updated to flag any messages containing URLs that resolve to this domain. Continuous monitoring of Cloudflare‑hosted assets for similar naming patterns and the reuse of the eugene.ns.cloudflare.com / tiffany.ns.cloudflare.com nameservers is recommended. Incident response teams should also watch for emerging variants that may copy the “Llamaswap” title or target the same “across” brand.
Data Coverage
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 11/08/2026
10 fuentes externas supervisadas Sin coincidencias
Cronología de detección
-
VirusTotal
4 → 5
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, nombres TLS y marcas de tiempo
ICANN OVERSIGHT
Acreditación y contexto RAA
Acreditación y contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologías
3 tecnologías identificadas con alta confianza
Análisis de VirusTotal
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of llamaandswap.com · checked Mar 2, 2026
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.