claim[.]lidoflnance[.]xyz
“Et øjeblik ...”
claim.lidoflnance.xyz — Контент недоступен. Олицетворение бренда: Lido; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 0 detections (engine total unavailable); PhishDestroy score 45/100. Регистратор: PDR.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of claim.lidoflnance.xyz indicates a recent Lido brand impersonation campaign classified as a crypto scam. The domain was registered on November 5, 2024 through PDR Ltd. d/b/a PublicDomainRegistry.com and resolves to the IPv6 address 2606:4700:3030::6815:3b1f, which belongs to Cloudflare, Inc. (AS13335). Both authoritative nameservers, desi.ns.cloudflare.com and venkat.ns.cloudflare.com, are Cloudflare‑hosted, confirming that the infrastructure is provided by the same CDN service. No SSL certificate was observed for the domain, meaning HTTPS connections would be unavailable or would fall back to an insecure HTTP endpoint.
The site title returned by the HTTP response is "Et øjeblik ...", a phrase unrelated to the Lido brand, suggesting that the page content has not been publicly disclosed or that the landing page is minimal. The domain appears on a single blocklist, PhishDestroy, and has been flagged by that service as a malicious resource. VirusTotal reports show that the domain was scanned by 95 vendors, none of which raised a detection; however, the absence of a detection does not constitute a safety assurance.
The current operational status is offline, limiting immediate interaction but indicating that the threat actor may reactivate the domain or use the same registration details for future campaigns. Defenders should add claim.lidoflnance.xyz to blocklists and deny any network traffic to its IP range, monitor for re‑registration or similar domains employing the Lido brand, and enforce strict validation of Lido‑related communications. Continuous observation of Cloudflare‑hosted IPs linked to this domain is recommended, as well as periodic re‑scanning with malware intelligence services to capture any changes in payload or hosting behavior.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Registration: lidoflnance.xyz
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain lidoflnance.xyz behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Криминалистическая аналитика
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание