lisaloopcoin[.]digital
“Nur einen Moment…”
lisaloopcoin.digital — Скрытый · достижимый. Сводка доказательств: VirusTotal 12/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 100/100. Регистратор: PDR.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of lisaloopcoin.digital indicates a high‑risk phishing infrastructure that remains active as of the report date. The domain was registered on 21 February 2026 through PDR Ltd. d/b/a PublicDomainRegistry.com and immediately points to the IP address 104.21.26.160, which is owned by Cloudflare (AS13335) and located in the United States. DNS resolution is handled by the Cloudflare nameservers liv.ns.cloudflare.com and michael.ns.cloudflare.com, and the site is served over HTTP/3 with a TLS certificate issued by Let’s Encrypt (E7). An HTTP 403 response is observed, and the only visible page title is “Nur einen Moment…”.
The infrastructure is flagged by multiple reputation sources: Gridinsoft assigns a trust score of 0 / 100, the domain appears on three security blocklists, and it is explicitly blocked by PhishDestroy, MetaMask, and SEAL. VirusTotal records two positive detections out of ninety‑five scanners, reinforcing the malicious classification. The combination of Cloudflare front‑ending, a low‑trust score, and blocklist listings aligns with a generic phishing campaign targeting users who may be lured by the domain name’s reference to “coin”.
No additional content or payload details have been disclosed, so the exact phishing vector and victim profile remain uncertain. Defenders should treat lisaloopcoin.digital as malicious, add it to URL filtering and DNS block lists, monitor for any C‑name or IP re‑use within the Cloudflare network, and advise users to avoid any unsolicited requests that direct them to this domain. Ongoing telemetry collection is recommended to capture any future changes in hosting or page content.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 2 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание