lcloud-com-pe.help
Appeared in the .help zone on Saturday, August 29, 2026; by the end of that day the census found boilerplate page. Full domain report
Signals, not verdicts. A domain appears here because heuristics matched its name, its infrastructure or the page it served on its first day. Where a model has looked at it, that is shown as an opinion with a confidence, not as a finding. Nothing on this page says a site is malicious. Read the evidence and decide for yourself.
Own one of these names and think the listing is wrong? Tell us and a person will look.
What matched
Model opinions
lcloud-com-pe.help is a character-swap squat of icloud.com (with a Peru-style '-com-pe' suffix) served from a rare Spanish-language nameserver pair (soportedns.top) that fronts 32 identical pages, but the site currently returns only an Apache 403 with no content or form — a brand-squat staged for a likely iCloud-unlock phishing campaign rather than a live deceptive page.
Domain name is a typosquat on iCloud (lcloud-com-pe.help mimics iCloud's structure); it uses rare custom nameservers (soportedns.top) and is part of a 32-domain cluster with identical boilerplate pages, indicating a bulk brand-squat campaign. The 403 error and lack of functional content suggest infrastructure preparation for phishing, but no active impersonation page is currently visible.
A model looked at the screenshot and page text and wrote what it thought. It can be wrong, and it is not a finding.
What the page looked like on Saturday, August 29, 2026

Same data as JSON: /api/zone/domain/lcloud-com-pe.help. This page is not indexed by search engines and does not link to the site it describes.