Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@dynadot.com.
The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
menu[.]themusicpress[.]org
“VEGAS123 x Slot88 : Link Slot Jackpot 888 Slots Hari Ini Gampang Maxwin”
menu.themusicpress.org — لم يتم التحقق منها. نوع الاحتيال: Credential Phishing. ملخص الأدلة: VirusTotal 4/91 (CRDF, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); PhishDestroy score 76/100. مسجّل النطاق: Dynadot.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Analysis of menu.themusicpress.org shows a newly created domain (registered 27 June 2026) hosted behind Cloudflare (IP 188.114.96.3, CA) and served over HTTPS with a Google Trust Services certificate. The site resolves to Cloudflare's edge network (nameservers fiona.ns.cloudflare.com and moura.ns.cloudflare.com) and responds with HTTP 200. Page metadata reveals the title "VEGAS123 x Slot88 : Link Slot Jackpot 888 Slots Hari Ini Gampang Maxwin," indicating a gambling‑oriented lure. Technical profiling detected AMP, Lightbox, Cloudflare, and HTTP/3 usage, consistent with a modern phishing kit identified as a Gambler Scam. The domain appears on one public blocklist (PhishDestroy) and three of ninety‑one VirusTotal scanners flagged it, while Gridinsoft assigns a trust score of 0/100, reinforcing the malicious classification. The registration was performed through Dynadot Inc. Current intelligence confirms the site is active and targeting credentials, likely aiming to harvest login data for gambling platforms. Uncertainty remains around the full extent of victim interaction and whether additional infrastructure (e.g., command‑and‑control servers) is linked to the same IP range. Defenders should block the domain at perimeter filters, update URL reputation feeds, and monitor for related traffic to Cloudflare edge nodes serving similar gambling phishing kits. Incident response teams should consider collecting network logs for the IP 188.114.96.3 and correlating any credential submission attempts with known gambling account identifiers.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
Registration: themusicpress.org
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain themusicpress.org behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات · 4 identified
AMP, originally created by Google, is an open-source HTML framework developed by the AMP open-source Project. AMP is designed to help webpages load faster.
www.amp.dev ثقة 100٪Lightbox is small javascript library used to overlay images on top of the current page.
lokeshdhakar.com ثقة 100٪Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com ثقة 100٪HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org ثقة 100٪تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of menu.themusicpress.org · checked Jun 29, 2026
الأدلة والتقارير الخارجية
PD-20260629-84433E Recipient: abuse@dynadot.com هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب