lazysnails[.]xyz
“Lazy Snails NFT Giveaway”
lazysnails.xyz — Erreur de serveur (HTTP 502). Type d'arnaque : Crypto Drainer. Résumé des preuves: VirusTotal 9/93 (alphaMountain.ai, CRDF, CyRadar, Fortinet, Kaspersky); URLQuery 1 alert; Spamhaus DBL_PHISH; PhishDestroy score 81/100. Bureau d’enregistrement: NiceNIC.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
This domain is flagged for hosting a fake NFT giveaway phishing scheme, a threat type designed to deceive users into connecting wallets or submitting credentials under the guise of a promotional event. The fraudulent nature is confirmed by the page title 'Lazy Snails NFT Giveaway,' which mimics legitimate non-fungible token distributions to exploit victims financially or harvest sensitive data. Given the elevated risk level, this domain poses a significant threat to users unfamiliar with cryptocurrency scams or those engaging with unverified digital asset promotions. Analysis indicates the domain was registered on February 21, 2026, through NiceNIC International Group Co., Limited, a registrar frequently associated with high-risk domains. It resolves to the IP address 172.67.177.99, located within Cloudflare’s network (AS13335), a common obfuscation tactic to conceal hosting origins. VirusTotal reports 9 out of 95 security vendors detecting the domain as malicious, while it appears on at least one security blocklist. The SSL certificate, issued by Google Trust Services (WE1), provides no inherent trust validation, as phishing domains routinely use valid certificates to appear legitimate. Additional infrastructure analysis reveals the domain has been taken offline, though historical records confirm its prior use in fraudulent activity. Mitigation steps for this specific threat type include immediate blocking of the domain and its associated IP across network security controls. Users who interacted with the site should revoke any wallet permissions granted during the alleged giveaway and monitor connected accounts for unauthorized transactions. Organizations should update endpoint detection rules to flag domains impersonating NFT promotions, particularly those leveraging Cloudflare hosting or NiceNIC registration. Cryptocurrency wallet providers are advised to warn users against connecting to unverified giveaway pages, especially those using urgency-based tactics or unrealistic incentives. Historical WHOIS and DNS records should be preserved for potential forensic analysis, as the domain may resurface under altered infrastructure.
Renseignements sur la sécurité réseau Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | lazysnails.xyz |
malicious | Sinkholed |
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-19 03:08:43 UTC
Technologies · 3 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analyse VirusTotal
Preuves archivées
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of lazysnails.xyz · checked Mar 2, 2026
Données factuelles et rapports externes
PD-20260214-A0AEE0 Recipient: abuse@nicenic.net Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif