lidofinance[.]co
“Lido Finance | Leading Liquid Staking Protocol”
lidofinance.co — Conteúdo indisponível. Representação da marca: Lido. Resumo das evidências: VirusTotal 13/91 (ChainPatrol, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); Spamhaus DBL_PHISH; 3 external blocklist matches (MetaMask, ScamSniffer, SEAL); PhishDestroy score 89/100.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Analysis of lidofinance.co as of July 29 2026 shows that the domain is actively listed as a malicious phishing resource. The site is currently blocked by four independent anti‑phishing solutions—PhishDestroy, MetaMask, ScamSniffer and SEAL—indicating that at least these providers have observed malicious activity originating from the host. In addition, the domain appears on four public security blocklists, which further corroborates its reputation as a threat vector. VirusTotal scans reveal that thirteen of ninety‑one antivirus and URL‑reputation engines have returned a malicious verdict, a proportion that exceeds typical false‑positive rates for clean sites and suggests that the content or behavior of the domain matches known phishing patterns.
No publicly available page title, SSL certificate details, or hosting metadata have been disclosed in the current intelligence set, leaving the exact phishing lure and targeted brand undefined. Consequently, defenders lack concrete indicators such as specific login forms, credential‑harvesting URLs, or brand‑spoofing language. Given the convergence of multiple independent blocklists and a non‑trivial detection rate on VirusTotal, the risk assessment remains high.
Defensive recommendations include adding lidofinance.co to URL filtering rules across corporate firewalls and endpoint security suites, enforcing DNS‑based blocklists that contain the domain, and monitoring network traffic for outbound connections to the host. Organizations should also educate users about unsolicited communications that request financial information, as the domain name suggests a possible financial‑themed lure. Continuous re‑evaluation is advised, as further analysis of the site’s HTTP responses, SSL certificate, and hosting infrastructure may reveal additional indicators of compromise.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
Análise do VirusTotal
Evidências e relatórios externos
“@Zerozerozerothanks_bot”
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo