The domain l-lcloud-com.site was registered through EuroDNS S.A. on July 02, 2026 and currently resolves to the IP address 108.167.146.200. It is served by the nameservers cns43.webhostbox.net and cns44.webhostbox.net, indicating hosting on a shared web‑hosting platform. The domain appears on two security blocklists and has been explicitly blocked by the phishing‑specific feed providers PhishDestroy and OpenPhish, confirming that it is being used for malicious activity.
VirusTotal analysis shows that one of ninety‑one scanning engines flagged the domain, providing additional vendor‑level corroboration of its malicious nature. The threat classification in the intelligence is generic phishing, and the risk level is marked as high while the status remains active, meaning the domain is still reachable and potentially serving phishing content. No public information is available regarding the site's SSL certificate, HTTP response codes, or page title, so the exact content and visual tactics employed by the site cannot be confirmed at this time.
Given the concrete evidence of blocklist inclusion, feed blocking, and a vendor detection, defenders should treat the domain as unsafe. Recommended mitigation steps include adding l-lcloud-com.site to DNS and proxy blocklists, configuring firewalls to deny outbound connections to its IP address, and monitoring network logs for any attempted communications. Continuous re‑assessment is advised, as additional intelligence such as page content or certificate details may emerge and further refine the threat profile.