MALICIOUS — HIGH
bc[.]lunfinb[.]com
The domain bc.lunfinb.com was identified as a phishing site engaged in brand impersonation targeting the cryptocurrency platform 'across'.
- VirusTotal
- 2/95
- Blocklists
- No stored match
- Kullanılabilirlik
- İçerik kullanılamıyor · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
bc.lunfinb.com — İçerik kullanılamıyor (HTTP 502). Marka kimliğine bürünme: Across; Dolandırıcılık türü: Crypto Scam. Kanıt özeti: VirusTotal 2/95 (Gridinsoft, Netcraft); URLScan malicious verdict; PhishDestroy score 56/100.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Evidence Analysis
The domain bc.lunfinb.com was identified as a phishing site engaged in brand impersonation targeting the cryptocurrency platform 'across'. This scam operated under the guise of 'Bec Live Bank' and posed an elevated risk by attempting to deceive users into disclosing sensitive information or transferring cryptocurrency. No drainer kit was associated with this campaign. The site is currently taken offline, but its prior activity remains a concern for potential victims.
Technical analysis of bc.lunfinb.com revealed limited but notable detection. The domain was flagged by 2 of 95 security vendors on VirusTotal, including Gridinsoft and Netcraft, with a Gridinsoft trust score of 0/100. It appeared on one security blocklist, PhishDestroy, though Google Safe Browsing did not flag it. The domain was created on February 21, 2026, and resolved to the IP address 198.251.89.220, hosted by FranTech Solutions in the US (AS53667). The SSL certificate was issued by R10, and the observed page title was 'Bec Live Bank'.
Individuals who interacted with bc.lunfinb.com should take immediate action to secure their assets and accounts. For cryptocurrency-related scams, revoke any token approvals granted to unknown contracts and transfer funds to a new wallet. If login credentials were entered, change passwords immediately and enable two-factor authentication (2FA) on all affected accounts. Monitor accounts for unauthorized transactions or suspicious activity. Report the phishing domain to platforms such as Google Safe Browsing, PhishTank, or the impersonated brand's official abuse channels to aid in mitigation efforts.
Veri kapsamı12 recorded checks
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Adli İstihbarat
VirusTotal Analizi
Kanıtlar ve Dış RaporlarIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.