greenlizard[.]lol
“Official Lizard Coin Airdrop”
Сводка доказательств
The domain greenlizard.lol hosted a fraudulent website titled "Official Lizard Coin Airdrop" that impersonated the brand "celer". This site was classified as a wallet_connect_phish scam, posing a threat by attempting to deceive users into connecting their cryptocurrency wallets, likely leading to asset theft.
Technical analysis from VirusTotal shows the domain was flagged by 21 out of 95 security vendors. The domain was registered on 2026-02-13 through PDR Ltd. d/b/a PublicDomainRegistry.com. It resolved to IP address 178.20.210.166, located in Finland and hosted by AS210006 Shereverov Marat Ahmedovich. The nameservers were liv.ns.cloudflare.com and michael.ns.cloudflare.com.
The site is currently DOWN/OFFLINE. GridinSoft trust rating is 0 out of 100, indicating high risk. The domain risk score is 73. Due to the confirmed scam type, brand impersonation, and multiple blocklist entries, this domain poses a significant threat to users.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260315-84414B- Заголовок сохранённой страницы
- Official Lizard Coin Airdrop
- PDF-файл
- PDF с доказательствами
Правовое основание
Полный текст доказательств
Acceptable Use Policy (AUP): The domain greenlizard.lol is actively engaged in phishing activities, which constitutes a clear violation of your AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The ongoing use of this domain for malicious purposes violates your TOS, which reserves the right to suspend or terminate services for any activities that contravene the terms outlined.
Applicable Laws (US):
Computer Fraud and Abuse Act (18 U.S.C. § 1030): This law prohibits unauthorized access to computers and the use of such access to commit fraud, which is applicable to phishing schemes.
CAN-SPAM Act (15 U.S.C. § 7701 et seq.): This act regulates commercial email and prohibits deceptive practices in email marketing, including phishing.
Wire Fraud (18 U.S.C. § 1343): This statute criminalizes schemes to defraud individuals or entities via electronic communications, which encompasses phishing activities.
Regulatory Note: Failure to act on this report may expose your organization to legal liability and regulatory scrutiny. Immediate action is recommended to mitigate potential risks associated with hosting this domain.
Data Coverage
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | greenlizard.lol |
malicious | Sinkholed |
| DigiCert UltraDNS | greenlizard.lol |
malicious | Sinkholed |
| Quad9 DNS | greenlizard.lol |
malicious | Sinkholed |
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
VirusTotal
0 → 6
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Криминалистическая аналитика
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание