hcdistrictclerk[.]lgbku[.]vip
“lgbku.vip | 521: Web server is down”
hcdistrictclerk.lgbku.vip — Непроверенный. Тип мошенничества: Credential Phishing. Сводка доказательств: VirusTotal 14/91 (BitDefender, Chong Lua Dao, CyRadar, ESET, Forcepoint ThreatSeeker); PhishDestroy score 92/100. Регистратор: Namemart.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, hcdistrictclerk.lgbku.vip, has been identified as a threat aimed at credential theft. The domain poses significant risks to users by potentially harvesting sensitive information such as passwords and private data. This form of attack can lead to unauthorized access to personal or organizational accounts, resulting in data breaches or financial loss. Given its current offline status, it may have been actively engaged in malicious activities before being taken down.
Technical analysis reveals that the domain was created on June 12, 2026, and is registered through Namemart Limited. The domain resolved to the IP address 188.114.96.3 and had an SSL certificate issued by Google Trust Services, which may have been intended to lend legitimacy to its phishing schemes. It appears on 1 security blocklist and is actively blocked by PhishDestroy. Furthermore, it has been flagged by 14 out of 95 security vendors on VirusTotal, corroborating its malicious intent.
Users who suspect having interacted with this domain should immediately change any potentially compromised passwords and monitor related accounts for unauthorized activity. Additionally, enabling two-factor authentication where possible can provide an extra layer of security. Organizations should update their security protocols to ensure domains like hcdistrictclerk.lgbku.vip are included in their blocklists and ensure employee awareness of such threats to mitigate risks effectively.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Registration: lgbku.vip
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain lgbku.vip behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of hcdistrictclerk.lgbku.vip · checked Jun 25, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание