telecharger-losslesscut[.]fr
“Extrayez vos vidéos rapidement et simplement - Telecharger-losslesscut.fr”
telecharger-losslesscut.fr — 未验证. 诈骗类型:Generic Phishing. 证据摘要: VirusTotal 4/91 (CRDF, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 78/100. 注册商: TLD Registrar Solutions.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, telecharger-losslesscut.fr, is currently under investigation for impersonating the legitimate LosslessCut video editing software with the intent to distribute malicious payloads. Analysis indicates this is a generic phishing operation targeting users seeking video extraction tools, presenting itself as a French-language download portal for the open-source application. The threat type has been classified as generic_phishing with an active status, though no specific malware family has been attributed at this time. Infrastructure analysis reveals the domain was registered on June 28, 2020 through TLD Registrar Solutions Ltd and currently resolves to IP address 35.214.148.249. Despite its four-year operational history, the domain has evaded detection by all 95 VirusTotal vendors, showing 0/95 detections as of the latest scan. The page title, 'Extrayez vos vidéos rapidement et simplement - Telecharger-losslesscut.fr,' directly mimics legitimate software download pages while using French localization to appear authentic. No blocklist entries or trust score degradations have been recorded in public threat intelligence feeds. Current assessment shows the domain remains active with no takedown actions initiated. Security teams are advised to implement DNS-based blocking for 35.214.148.249 and the full domain in corporate environments. End users should be warned that this site does not provide legitimate LosslessCut software and may deliver malicious executables. Organizations should monitor for connections to this IP and domain in network logs, particularly from systems where video editing tools are commonly used. The lack of VirusTotal detections despite clear impersonation tactics suggests this campaign may be operating below typical detection thresholds, warranting manual review of any files downloaded from this source.
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 1 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 置信度 100%VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。