セキュリティレポートへ移動
Checked 2026年8月9日 Ref C75AB27F

MALICIOUS — CRITICAL

lobstrwealletti.gitbook.io のフィッシング・安全性チェック

lobstrwealletti[.]gitbook[.]io

The domain lobstrwealletti.gitbook.io is currently active and has been classified as a high‑risk generic phishing site.

90/100 evidence score · Critical
VirusTotal
5/91
Blocklists
2 · MetaMask, SEAL
可用性
最後に確認されたアクティブな状態 · HTTP 307
Report / Add Evidence Appeal this listing
No capture stored

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
このドメインは悪意のあるものとして報告されています
検出を報告するセキュリティ エンジン: 5。 一致を報告する公開ブロックリスト: 2。 細心の注意を払ってください — 資格情報や個人情報を入力しないでください。
Jump to section
レポート概要

lobstrwealletti.gitbook.io — 最後に確認されたアクティブな状態 (HTTP 307). 証拠の概要: VirusTotal 5/91 (ChainPatrol, alphaMountain.ai, CyRadar, Kaspersky, Webroot); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 90/100. レジストラ: GitBook.

元のフォレンジック記録を保持するため、下の PhishDestroy AI 詳細分析は英語のままです。

Evidence Analysis

Ref C75AB27F

The domain lobstrwealletti.gitbook.io is currently active and has been classified as a high‑risk generic phishing site. The public page title reads “Lobstr Wallet | - The Best Simple and Secure Stellar Wallet | lobstr wallet”, which mimics the branding of a legitimate Stellar wallet service. The site is listed on three security blocklists and is already blocked by PhishDestroy, MetaMask, and SEAL. The domain was registered on May 06 2026 through the GitBook platform, a service that provides free hosting for documentation sites. DNS resolution points to the IP address 172.64.147.209, which belongs to Cloudflare, Inc. in Canada. The HTTPS certificate is issued by Google Trust Services under the WE1 root, and the server returns an HTTP 307 temporary redirect, a pattern often used to forward victims to malicious payloads while preserving the original URL. Gridinsoft assigns a trust score of 0 / 100, indicating a complete lack of reputation. VirusTotal scans show that 4 of 95 security vendors flag the domain, providing limited but concrete detection of malicious behavior. The low number of detections may reflect the recent creation date, but the presence of a legitimate‑looking wallet page, combined with the active blocklist entries, suggests a deliberate attempt to harvest credentials or private keys from unsuspecting users. No additional infrastructure such as command‑and‑control servers or known phishing kits has been observed, leaving the full scope of the operation uncertain. Defenders should treat any traffic to lobstrwealletti.gitbook.io as hostile. Immediate actions include adding the domain to network‑level deny lists, updating email filters to catch references to “Lobstr Wallet”, and monitoring for credential‑theft attempts targeting Stellar accounts. End‑users must be warned that the legitimate Lobstr wallet does not use a GitBook subdomain, and any request to this URL should be rejected. Continuous re‑evaluation is advised as further indicators may emerge.

Stored source results

Recorded verdicts and infrastructure observations for this domain.

VirusTotal
VirusTotal
5 det.
TLS証明書
期限切れまたは未検証 -52d
年齢
3 mo
観測ステータス
最後に確認されたアクティブな状態 307
PhishDestroy
DestroyList
掲載あり
データの網羅性12 recorded checks
VirusTotal 5 / 91 URLQuery チェックされていない PhishStats チェックされていない OTX no community references CFレーダー no data URLScan capture not submitted URLScan verdict 判定なし DNSブロック チェックされていない TLS 期限切れまたは未検証 WHOIS 3 mo old スクリーンショット 取得されていない リダイレクトチェーン 調査されていない

脅威対応 Pipeline

ディスカバリー
Checks
Reports
可用性
6/8
脅威の検知
lobstrwealletti.gitbook.io 検出され、詳細な分析のためにキューに入れられた
2026年6月15日
VirusTotal
5/91 recorded on VirusTotal
2026年7月27日
Google Safe Browsing
2026年5月7日
ブロックリストの検出
掲載先 2 blocklists: MetaMask, SEAL
2026年8月9日
Technical Analysis Recorded
レポートには、保存されたテクノロジーまたはフォレンジック分析の結果が含まれます。
2026年8月9日
Complaint Draft Available
提出物は記録されません。ドラフトを作成してレビューし、適切な当局に自分で提出することができます。
DestroyList 公開
2026年6月15日
Monitoring Continues
ドメインはアクセス可能またはアクセス制限されたままになります。今後のチェックにより、この観察結果が更新される可能性があります。

公開ブロックリスト登録状況

ドメイン・インテリジェンス

ドメイン
サーバー / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden Edge-IP の評判はこのドメインに起因しません。
Registrar (base domain) GitBook
IPアドレス 172.64.147.209 CDN
地域CA Toronto, CA
ネットワークAS13335 · Cloudflare, Inc.
発信元 IP は CDN プロキシの背後に隠されています。エッジ アドレスのリバース IP の結果には、無関係なテナントが含まれています。発信元を見つけるには、パッシブ DNS または証明書の透明性データが必要です。
Registration (base domain)gitbook.io · 作成日 2026年5月6日 (95d)
HTTPステータス307 Temporary Redirect
技術的な詳細DNS、SSL SAN、タイムスタンプ
初確認2026年6月15日
TLS Fingerprint
TLS Observationvalid from 2026年3月21日scanned 2026年5月6日
TLS SAN Domainsgitbook.io
このドメインを報告する 証拠を提出し、他の人を守る手助けをしましょう

VirusTotalによる分析

5 / 91 セキュリティ ベンダーがこのドメインにフラグを立てました
View on VT
Last analyzed Previous stored snapshot: 6 detections
ChainPatrol
alphaMountain.ai
CyRadar
カスペルスキー
Webroot
証拠および外部報告書Independent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。

ユーロポール
EU 加盟国の公式報告チャネルを見つける
National police directory
復旧を装った詐欺に注意! 犯罪者は、捜査員、弁護士、または回収業者を装い、被害者に再び連絡を取る可能性があります。 前払い料金を支払ったり、資格情報を共有したりしないでください。 回復詐欺について詳しくはこちら →

お住まいの地域の当局へ報告してください

サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。

97か国のディレクトリ
AI 支援ドラフト — インシデントの詳細は AI プロバイダーによって処理されます 自分で確認して送信する
このレポートを埋め込むRead-only HTML widget
HTML · IFRAME

このレポートを埋め込む

この脅威情報を、ご自身のウェブサイトやブログで共有してください

embed.html
<iframe
  src="https://phishdestroy.io/ja/embed/domain/lobstrwealletti.gitbook.io"
  title="PhishDestroy threat report for lobstrwealletti.gitbook.io"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>