nexuslendall[.]store
“Nexus Lend — Crypto-backed Loans”
nexuslendall.store — Неперевірений. Уособлення бренду: Genericcrypto; Тип шахрайства: Fake Exchange. Зведення доказів: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, Bfore.Ai PreCrime, BitDefender, Chong Lua Dao); URLScan malicious verdict; 3 external blocklist matches (MetaMask, ScamSniffer, SEAL); PhishDestroy score 95/100. Реєстратор: NameCheap.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis indicates that nexuslendall.store is an active malicious site observed since its registration on 30 Mar 2026. The domain resolves to 172.67.207.236, a Cloudflare‑hosted address located in Canada. It is served over HTTPS with a Let’s Encrypt certificate (E8) and enforces HSTS, HTTP/3 and Cloudflare Browser Insights. The page title returned by the server is “Nexus Lend — Crypto‑backed Loans” and the HTTP response code is 403, suggesting that the content is being blocked by some filters. Intelligence classifies the site as a generic phishing campaign delivering a fake exchange offering crypto‑backed loans. The domain is listed on four public blocklists and is explicitly blocked by PhishDestroy, MetaMask, SEAL and ScamSniffer. On VirusTotal, one out of ninety‑four scanning engines flagged the domain, and Gridinsoft assigns a trust score of 0 / 100. Registration was performed through NameCheap, Inc., and the authoritative nameservers are naomi.ns.cloudflare.com and shane.ns.cloudflare.com. Uncertainty remains regarding the specific payload or credential‑harvesting mechanisms hosted at the URL, as the site returns a 403 status and no further content has been captured. Defenders should continue to block the domain at perimeter and endpoint layers, monitor DNS queries for the associated IP and nameservers, and add the domain to internal blacklists. Incident response teams should treat any communications referencing “Nexus Lend” or crypto‑backed loans as potentially malicious and advise users to avoid providing credentials or financial information.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 4 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of nexuslendall.store · checked Mar 30, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога