lisaloopcoin[.]digital
“Nur einen Moment…”
lisaloopcoin.digital — 隐形 · 可达. 证据摘要: VirusTotal 12/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 100/100. 注册商: PDR.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of lisaloopcoin.digital indicates a high‑risk phishing infrastructure that remains active as of the report date. The domain was registered on 21 February 2026 through PDR Ltd. d/b/a PublicDomainRegistry.com and immediately points to the IP address 104.21.26.160, which is owned by Cloudflare (AS13335) and located in the United States. DNS resolution is handled by the Cloudflare nameservers liv.ns.cloudflare.com and michael.ns.cloudflare.com, and the site is served over HTTP/3 with a TLS certificate issued by Let’s Encrypt (E7). An HTTP 403 response is observed, and the only visible page title is “Nur einen Moment…”.
The infrastructure is flagged by multiple reputation sources: Gridinsoft assigns a trust score of 0 / 100, the domain appears on three security blocklists, and it is explicitly blocked by PhishDestroy, MetaMask, and SEAL. VirusTotal records two positive detections out of ninety‑five scanners, reinforcing the malicious classification. The combination of Cloudflare front‑ending, a low‑trust score, and blocklist listings aligns with a generic phishing campaign targeting users who may be lured by the domain name’s reference to “coin”.
No additional content or payload details have been disclosed, so the exact phishing vector and victim profile remain uncertain. Defenders should treat lisaloopcoin.digital as malicious, add it to URL filtering and DNS block lists, monitor for any C‑name or IP re‑use within the Cloudflare network, and advise users to avoid any unsolicited requests that direct them to this domain. Ongoing telemetry collection is recommended to capture any future changes in hosting or page content.
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
所用技术 · 2 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
存档证据
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。