MALICIOUS — CRITICAL
liarasconth[.]com
This domain liarasconth.com was registered on May 09 2026 through Tucows Domains Inc.
- VirusTotal
- 4/91
- Blocklists
- No stored match
- Доступность
- Последний известный активный · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
liarasconth.com — Последний известный активный (HTTP 200). Тип мошенничества: Generic Phishing. Сводка доказательств: VirusTotal 4/91 (alphaMountain.ai, CRDF, Gridinsoft, SOCRadar); PhishDestroy score 76/100. Регистратор: Tucows.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Evidence Analysis
This domain liarasconth.com was registered on May 09 2026 through Tucows Domains Inc. It resolves to IP 188.114.97.3 located in CA under CloudFlare, Inc. and uses the nameservers ajay.ns.cloudflare.com together with piper.ns.cloudflare.com. The SSL certificate originates from Let's Encrypt under the E8 profile. HTTP requests return status 200 and the page title matches O‘ZBEKGIDROENERGO exactly. Infrastructure analysis reveals Cloudflare proxying in front of the origin. The domain remains active according to current observations. Analysis indicates appearance on one security blocklist and presence in a single AlienVault OTX threat intelligence pulse. VirusTotal records flags from 1 of 95 vendors. The Gridinsoft trust score is recorded at 0 out of 100. The risk level is classified high and the threat type is generic phishing. No additional ASN or kit details appear in the available data. Registration age of roughly two months is consistent with many short-lived domains observed in similar cases. What remains uncertain is the precise content served beyond the recorded title and whether the domain continues to host active credential-harvesting forms or redirect chains. The single blocklist hit and low vendor detection count leave the full scope of distribution unclear. No historical snapshots or WHOIS contact data were supplied to confirm prior use. Defenders should block the domain and its current IP at network boundaries while monitoring the listed nameservers for new resolutions. Certificate transparency logs should be watched for additional Let's Encrypt issuances under the same name. Organizations referenced by the page title O‘ZBEKGIDROENERGO can add the domain to internal watchlists and request takedown through the registrar Tucows Domains Inc. Continued verification of HTTP responses will confirm whether the infrastructure is still operational.
Охват данных12 recorded checks
Процесс реагирования на угрозы
Статус в публичных блок-листах
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Анализ конфигурации сайта
Доказательства и внешние отчетыIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.