Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@ddos-guard.net.
The latest stored availability evidence still shows the domain reachable; 7 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
lbank-azerbaijan[.]com
“LBank Login | Təhlükəsiz Kripto Valyuta Birjası | LBank Daxil Ol”
lbank-azerbaijan.com — Непроверенный. Олицетворение бренда: Argent; Тип мошенничества: Credential Phishing. Сводка доказательств: VirusTotal 5/91 (alphaMountain.ai, Chong Lua Dao, Fortinet, Gridinsoft, Yandex Safebrowsing); PhishDestroy score 83/100. Регистратор: NiceNIC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, lbank-azerbaijan.com, is flagged for cryptocurrency login spoofing, specifically impersonating the LBank cryptocurrency exchange platform. The site presents a fraudulent login interface designed to harvest credentials from users attempting to access their crypto wallets or trading accounts. The Azerbaijani-language page title, 'LBank Login | Təhlükəsiz Kripto Valyuta Birjası | LBank Daxil Ol,' reinforces the deception by mimicking legitimate regional branding and security assurances. Analysis indicates this domain was registered on October 8, 2025, through NiceNIC International Group Co., Limited, an offshore registrar frequently associated with high-risk domains. Infrastructure analysis reveals the domain resolves to the IP address 45.10.243.7 and employs technologies such as Ant Design, Vue.js, jQuery, Hammer.js, and DDoS-Guard, which are commonly used in both legitimate and malicious web applications. Security vendor detections on VirusTotal stand at 5 out of 95, and the domain appears on one security blocklist. Additionally, it has been referenced in one AlienVault OTX threat intelligence pulse, further confirming its malicious classification. Users who have visited lbank-azerbaijan.com or entered credentials on the site should immediately revoke access to any associated cryptocurrency wallets or exchange accounts. It is recommended to change passwords for all financial and email accounts, enable multi-factor authentication where available, and monitor for unauthorized transactions. Devices used to access the domain should be scanned for malware, and any suspicious browser extensions or applications should be removed. If financial loss has occurred, report the incident to relevant cybercrime authorities and provide all available indicators, including the domain, IP address, and timestamps of interaction.
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-18 02:42:54 UTC
Технологии · 5 identified
Progressive JavaScript framework for building user interfaces.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
Анализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of lbank-azerbaijan.com · checked Jun 27, 2026
Доказательства и внешние отчеты
PD-20260105-D447A8 Recipient: abuse@ddos-guard.net Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание