distributions-lobstarwilde[.]com
“LOBSTAR Airdrop 🦞 Claim Your $LOBSTAR”
distributions-lobstarwilde.com — Ошибка сервера (HTTP 502). Олицетворение бренда: Chase; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 9/94 (ADMINUSLabs, alphaMountain.ai, CyRadar, Fortinet, G-Data); Spamhaus DBL_PHISH; 3 external blocklist matches (MetaMask, ScamSniffer, SEAL); PhishDestroy score 77/100. Регистратор: NiceNIC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of distributions-lobstarwilde.com indicates a confirmed crypto airdrop scam targeting users with a fraudulent $LOBSTAR token claim. The domain was registered on March 22, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED and resolved to IP 188.114.96.3, hosted on Cloudflare infrastructure (AS13335) in Canada. Nameservers josh.ns.cloudflare.com and kay.ns.cloudflare.com further confirm Cloudflare usage, alongside detected technologies including Cloudflare Browser Insights and HTTP/3. The page title 'LOBSTAR Airdrop 🦞 Claim Your $LOBSTAR' explicitly signals the scam type, aligning with known airdrop phishing kits. Security vendors have flagged this domain extensively: it appears on 4 blocklists, and 9 of 94 vendors on VirusTotal detect it as malicious.
Major security tools including PhishDestroy, MetaMask, ScamSniffer, and SEAL have blocked the domain. Gridinsoft assigns a trust score of 0/100, reinforcing its malicious classification. The SSL certificate is issued by Let's Encrypt (serial E8), a common choice for both legitimate and malicious sites, providing no inherent safety assurance. As of July 24, 2026, the domain is offline, but defenders should treat it as a high-risk indicator.
The combination of crypto-themed page title, Cloudflare hosting, low trust scores, and multiple vendor detections confirms its fraudulent intent. No legitimate airdrop would use newly registered domains with such detection patterns. Network defenders should block the domain and IP, monitor for related infrastructure (e.g., additional Cloudflare-hosted domains with similar naming patterns), and alert users to avoid interacting with $LOBSTAR token claims from unverified sources. The exact content of the phishing page remains unanalyzed, but the available indicators leave no uncertainty about its malicious purpose.
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-14 03:02:38 UTC
Криминалистическая аналитика
Технологии · 3 identified
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of distributions-lobstarwilde.com · checked Mar 21, 2026
Доказательства и внешние отчеты
PD-20260321-9C736A Recipient: abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание