treasury-lido[.]com
“treasury-lido.com | 504: Gateway time-out”
Kanıt özeti
The domain treasury-lido.com was created on December 1, 2025 and is currently listed as offline. Technical resolution shows the domain pointing to IP address 188.114.97.3, which belongs to AS13335 Cloudflare, Inc. and is geolocated in the United States. The authoritative name servers are alexa.ns.cloudflare.com and randall.ns.cloudflare.com, indicating the infrastructure is fully hosted behind Cloudflare's edge network and is serving HTTP/3. An HTTP request to the site returned a 404 status code, while the page title reported by the scanner reads "treasury-lido.com | 504: Gateway time-out," suggesting the origin server is not responding. The SSL certificate presented is issued by Google Trust Services under the identifier WE1, confirming the use of a valid TLS certificate despite the site’s unavailability.
Brand analysis identifies the domain as an impersonation of Lido, a known cryptocurrency staking platform, and the scam type is classified as a crypto scam. The domain appears on a single security blocklist and has been flagged by three of ninety‑five VirusTotal scanners, indicating modest detection across the security community. Registration records show the domain was registered through Dynadot LLC, a registrar commonly used for both legitimate and malicious domains. PhishDestroy has actively blocked the domain, reinforcing the view that it is being used for malicious purposes.
While the available data confirms the domain’s association with a crypto‑related brand impersonation campaign, the limited number of blocklist entries and vendor detections leave some uncertainty regarding the current scale of the operation. No additional content, landing pages, or phishing kits have been observed, and the site’s offline status prevents further behavioural analysis. Defenders should continue to block traffic to 188.114.97.3 and add treasury-lido.
Data Coverage
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 12.08.2026
Tespit zaman çizelgesi
-
Cloudflare Radar
Cloudflare Radar taraması kaydedildi · Taramayı aç
-
Alan adı durumu
Erişilebilir → Erişilemiyor
-
Cloudflare Radar
Cloudflare Radar taraması kaydedildi · Taramayı aç
-
Alan adı durumu
Erişilemiyor → Erişilebilir
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin