crownlabyrinth[.]shop
“crownlabyrinth.shop | 523: Origin is unreachable”
Зведення доказів
This domain, crownlabyrinth.shop, is flagged as a credential theft operation targeting users through deceptive login portals. Analysis indicates no direct association with a specific brand impersonation or cryptocurrency drainer kit, but the infrastructure and page behavior align with credential harvesting tactics. The domain was designed to mimic legitimate services, likely capturing usernames, passwords, and other sensitive credentials for subsequent exploitation or resale on underground markets.
Technical indicators confirm elevated risk: the domain resolves to IP 188.114.96.3 and was registered through Namecheap, Inc. on June 12, 2026. VirusTotal detection shows 7 out of 95 security vendors flagging the domain as malicious. It appears on a single security blocklist and has been referenced in 4 AlienVault OTX threat intelligence pulses. The domain was served via Cloudflare, utilizing HTTP/3, and presented an SSL certificate issued by Google Trust Services. The page title, 'crownlabyrinth.shop | 523: Origin is unreachable,' suggests a deliberate attempt to obscure its malicious nature by simulating a server error.
As of the latest assessment, crownlabyrinth.shop is offline, likely due to takedown or infrastructure suspension. However, residual risk remains due to potential credential exposure from prior interactions. Users who accessed the domain should assume compromise of any submitted credentials and initiate password resets for associated accounts. Organizations are advised to block the domain and IP at the network level, monitor for related indicators of compromise, and educate users on recognizing credential theft attempts. Continuous monitoring of threat intelligence feeds for re-emergence or related domains is recommended.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 12.08.2026
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології
Виявлено 2 технології з високою впевненістю
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of crownlabyrinth.shop · checked Jun 25, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога