lprcn[.]biz
“Вы не робот?”
lprcn.biz — Последний известный активный (HTTP 200). Тип мошенничества: Generic Phishing. Сводка доказательств: VirusTotal 6/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); URLQuery 1 alert; PhishDestroy score 80/100. Регистратор: NiceNIC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
PhishDestroy identifies lprcn.biz as an active fake-login phishing domain with an elevated risk level.
This domain was flagged by PhishDestroy’s threat-intelligence pipeline as a generic phishing host designed to harvest user credentials. VirusTotal reports that only 1 out of 95 participating security vendors currently detect lprcn.biz as malicious. The infrastructure footprint points to a single IPv4 address, 91.206.71.2, operated by NICENIC INTERNATIONAL GROUP CO., LIMITED. Domain registration records show lprcn.biz was created on April 25, 2021 via the registrar NICENIC INTERNATIONAL GROUP CO., LIMITED and currently holds a Google Trust Services SSL certificate, indicating the adversary is using legitimate-appearing TLS to lower user suspicion.
Concrete technical indicators include the low but non-zero detection rate (1/95 on VirusTotal at time of analysis), the recent creation date, and the fact that the domain resolves to a bulletproof-hosting IP with no known block-list inclusions at present. These factors collectively elevate the risk of successful credential theft in targeted campaigns.
To mitigate exposure, users should avoid entering any login credentials on lprcn.biz. Verify the intended destination URL through an independent, trusted source before submitting sensitive information. Organizations may wish to pre-emptively block the domain and its resolving IP address at network egress points. Report any observed credential submission to PhishDestroy for rapid takedown and blacklist propagation.
Данные сетевой безопасности Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | lprcn.biz |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-17 02:45:06 UTC
Технологии · 1 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comАнализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of lprcn.biz · checked Apr 3, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание