Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
ethereumlispro[.]net
“Ethereum Lispro 2000 & Ethereum 2.0 Lispro (24) version | Official Website”
Зведення доказів
The domain ethereumlispro.net is identified as a high-risk brand impersonation threat specifically targeting Ethereum, a major cryptocurrency platform. Analysis confirms the domain was actively impersonating Ethereum’s official branding, presenting itself as an authorized platform for Ethereum upgrades or services. The domain is currently offline, though prior activity and infrastructure remain documented for investigative purposes. Infrastructure analysis reveals the domain was created on February 21, 2026, through registrar MainReg Inc. It resolved to the IP address 212.92.105.101 and was secured with a Let’s Encrypt SSL certificate (serial number E8). The domain appears on three security blocklists and is referenced in two AlienVault OTX threat intelligence pulses. VirusTotal detection metrics indicate that 22 out of 95 security vendors flagged ethereumlispro.net as malicious. The page title, 'Ethereum Lispro 2000 & Ethereum 2.0 Lispro (24) version | Official Website,' further supports the conclusion of deliberate brand impersonation. Current status confirms the domain has been taken offline, though residual risk may persist through cached content or secondary distribution channels. Users and organizations are advised to block the domain and associated IP address at the network level. Cryptocurrency holders should verify all communications and platform interactions through Ethereum’s official channels only. Security teams are encouraged to monitor for related infrastructure, including domains registered through MainReg Inc. or resolving to the same IP range, as these may indicate further impersonation attempts.
Знімок надісланих доказів
- Надіслано
- Записи журналу
- 1
- ID справи
PD-20260131-FB8E82- PDF-файл
- PDF із доказами
Правова підстава
Повний текст доказів
Section 3.1 of the Acceptable Use Policy: The domain ethereumlispro.net is engaged in phishing activities, attempting to deceive users into providing sensitive information, which constitutes a clear violation of the prohibition against fraud and deception.
Section 5 of the Terms of Service: The registrar reserves the right to suspend or terminate services for any illegal activities. The operation of this phishing domain directly contravenes this provision, warranting immediate action.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA) - 18 U.S.C. § 1030: This law prohibits unauthorized access to computers and the fraudulent use of information, which is applicable to phishing schemes.
Wire Fraud Statute - 18 U.S.C. § 1343: This statute criminalizes schemes to defraud individuals or entities using electronic communications, which is relevant given the nature of phishing attacks.
CAN-SPAM Act - 15 U.S.C. § 7701: This law regulates commercial email and prohibits misleading headers and deceptive subject lines, which are often utilized in phishing attempts.
Regulatory Note: Failure to act on this report may result in liability under applicable laws and could expose your organization to regulatory scrutiny. Immediate suspension of the domain is advised to mitigate potential legal repercussions.
Data Coverage
Сигнали безпеки
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DigiCert UltraDNS | ethereumlispro.net |
malicious | Sinkholed |
| Hagezi Threat Feed | ethereumlispro.net |
malicious | Sinkholed |
| Cloudflare DNS | ethereumlispro.net |
malicious | Sinkholed |
| DNS4EU | ethereumlispro.net |
malicious | Sinkholed |
| OpenDNS | ethereumlispro.net |
phishing | Phishing Block |
| Quad9 DNS | ethereumlispro.net |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
Хронологія виявлення
-
VirusTotal
22 → 21
-
VirusTotal
22 → 21
-
VirusTotal
22 → 21
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of ethereumlispro.net · checked Mar 1, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога