looksrarenft[.]info
“Default Web Site Page”
looksrarenft.info — Контент недоступен. Олицетворение бренда: Looksrare; Тип мошенничества: Nft Scam. Сводка доказательств: VirusTotal 2/95 (alphaMountain.ai, Emsisoft); 1 external blocklist match (Enkrypt); PhishDestroy score 58/100. Регистратор: arin.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain looksrarenft.info is a confirmed phishing site engaged in brand impersonation targeting LooksRare, a well-known NFT marketplace. This site posed an elevated risk as an NFT scam, designed to deceive users into believing they were interacting with the legitimate LooksRare platform. No crypto drainer kit was identified in this campaign. The domain looksrarenft.info is currently taken offline, but users who may have visited it should remain cautious.
Technical analysis of looksrarenft.info reveals limited detection, with only 2 of 95 VirusTotal security vendors flagging the domain, including alphaMountain.ai and Emsisoft. The domain was registered through ARIN and resolves to the IP address 172.67.144.124, hosted on Cloudflare's network (AS13335) in the US. It appears on 2 security blocklists, specifically PhishDestroy and Enkrypt. No SSL certificate was observed, and the page title displayed 'Default Web Site Page'. The domain's creation date and nameserver details are not available.
Users who interacted with looksrarenft.info should take immediate steps to secure their assets and accounts. Since this was an NFT scam, victims should revoke any token approvals granted to unknown or suspicious contracts using tools like Etherscan's token approval checker. Moving funds to a new wallet is also recommended to prevent further exposure. Additionally, enable two-factor authentication (2FA) on all accounts, change passwords for any platforms where credentials may have been entered, and monitor for unauthorized transactions. Report the domain to platforms like Google Safe Browsing, PhishTank, or the impersonated brand (LooksRare) to aid in takedown efforts.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Доказательства и внешние отчеты
“@Drakannew”
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание