lumiohub[.]net
“Lumio - The NFT marketplace on Gravity Network”
lumiohub.net — Контент недоступний. Уособлення бренду: MetaMask; Тип шахрайства: Fake Airdrop. Зведення доказів: VirusTotal 7/93 (ChainPatrol, alphaMountain.ai, CRDF, CyRadar, Forcepoint ThreatSeeker); 3 external blocklist matches (Polkadot, Enkrypt, Codeesura); PhishDestroy score 74/100. Реєстратор: Hostinger.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain is flagged for elevated-risk brand impersonation targeting MetaMask, a widely used cryptocurrency wallet service. The threat involves deceptive infrastructure designed to mimic legitimate platforms, specifically presenting itself as an NFT marketplace on the Gravity Network. Analysis indicates the domain was engineered to harvest user credentials, private keys, or seed phrases under false pretenses, posing a direct financial risk to victims. Infrastructure analysis reveals the domain lumiohub.net was registered on December 23, 2025, through HOSTINGER operations, UAB, and resolves to the IP address 82.29.191.104. Security vendor detections include 7/95 flags on VirusTotal, while Gridinsoft assigns a trust score of 0/100. The domain appears on six security blocklists and is actively blocked by MetaMask, Codeesura, Polkadot, SEAL, and PhishDestroy. The page title, 'Lumio - The NFT marketplace on Gravity Network,' aligns with tactics used to exploit users seeking legitimate decentralized applications. Mitigation steps for this threat type include verifying domain registration dates via WHOIS lookups before interacting with any platform claiming affiliation with MetaMask. Users should cross-reference official communications from the target brand to confirm legitimate domains. Network-level protections, such as blocking the IP 82.29.191.104 and enforcing blocklist updates, can prevent access to this domain. Additionally, security teams should monitor for similar impersonation patterns, including fake NFT marketplaces or Gravity Network-related scams, and educate users on recognizing phishing indicators in cryptocurrency ecosystems.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога