Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@dynadot.com.
The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
app[.]xn--lightr-t3a[.]co
“Lighter.xyz Project Overview”
app.xn--lightr-t3a.co — 未验证. 诈骗类型:Fake Exchange. 证据摘要: VirusTotal 7/91 (alphaMountain.ai, Chong Lua Dao, CRDF, CyRadar, Gridinsoft); URLQuery 1 alert; PhishDestroy score 75/100. 注册商: Dynadot.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain app.xn--lightr-t3a.co has been identified as a generic phishing threat, impersonating the Lighter.xyz brand. This domain was designed to deceive users by mimicking legitimate project overview pages, potentially to harvest sensitive information. Although the specific brand being impersonated is Lighter.xyz, there is no indication of a specific drainer kit associated with this domain. The domain's deceptive nature is underscored by its misleading page title, Lighter.xyz Project Overview.
Technical analysis of app.xn--lightr-t3a.co reveals several indicators of malicious activity. VirusTotal reports that 7 out of 95 security vendors flagged this domain as malicious, highlighting its potential threat. The domain was registered through Dynadot Inc and resolves to the IP address 188.114.96.3. It was created on April 05, 2026, and uses a Let's Encrypt SSL certificate, which may lend a false sense of security to unsuspecting users. Additionally, the domain appears on one security blocklist, providing further evidence of its malicious intent.
The current status of app.xn--lightr-t3a.co is offline, following intervention and blocking by PhishDestroy. Despite being taken down, the domain's prior activity indicates a significant risk, as it may have already compromised users who visited while it was operational. Continuous monitoring and reporting to security vendors are recommended to ensure the domain remains offline and to prevent similar threats. Users are advised to remain vigilant and verify the legitimacy of domains before interacting with them.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | app.xn--lightr-t3a.co |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 置信度 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 置信度 100%VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of app.xn--lightr-t3a.co · checked Jun 26, 2026
证据与外部报告
PD-20260405-261AC2 Recipient: abuse@dynadot.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。