x-lucky[.]cc
“Google Chrome ‑selain”
x-lucky.cc — Último ativo conhecido (HTTP 200). Representação da marca: Google; Tipo de golpe: Brand Impersonation. Resumo das evidências: VirusTotal 9/91 (alphaMountain.ai, BitDefender, CRDF, Forcepoint ThreatSeeker, Fortinet); URLQuery 1 alert; PhishDestroy score 87/100. Registrador: NiceNIC.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
The domain x-lucky.cc remains active with a high risk classification tied to brand impersonation of Google. Multiple indicators support this assessment, including a VirusTotal score of 6 out of 95 vendors and a Gridinsoft trust score of 0 out of 100. The associated page title Google Chrome ‑selain reinforces the impersonation pattern. The domain is listed on one blocklist maintained by PhishDestroy and returns an HTTP status of 200, confirming operational availability as of the report date.
Infrastructure details show resolution to IP address 142.251.143.4 in the United States under autonomous system AS15169. Registration occurred on February 21, 2026 via NiceNIC International Group Co., Limited, with nameservers set to ns1.nameserverhub.com and ns2.nameserverhub.com. An SSL certificate from Let's Encrypt under issuer R13 is in use. These elements establish a functional hosting setup without indicating the specific payload or landing page behavior.
Analysis indicates that the impersonation label derives directly from the page title and threat classification rather than broader campaign attribution. Uncertainties remain around the precise content delivered to visitors and any linkage to wider actor infrastructure. The creation date in early 2026 places the domain within normal operational timelines relative to the July 12, 2026 report date, offering no basis for temporal anomaly conclusions.
Defenders reviewing this domain should implement network-level blocks using the provided IP and domain string while monitoring for related resolutions through the listed nameservers. Cross-referencing traffic logs against the registrar and certificate details can help surface additional connected assets. Continued observation of blocklist updates and periodic re-evaluation of the domain status remain necessary steps given its confirmed active state.
Inteligência de segurança de rede Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | x-lucky.cc |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Latest Classified Outcome 2026-08-16 02:50:32 UTC
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo