heroes-of-mavia[.]online
“404 Not Found”
The domain heroes-of-mavia.online is a generic phishing site designed to deceive users into disclosing sensitive information such as login credentials or personal data. It does not impersonate a known brand or utilize a crypto drainer kit. As of the latest verification, heroes-of-mavia.online has been taken offline, though its prior activity poses a risk to users who may have interacted with it.
Technical analysis of heroes-of-mavia.online reveals limited detection at this stage. The domain is registered through arin and resolves to the IP address 172.67.202.18, hosted on Cloudflare's infrastructure (AS13335) in the US. VirusTotal reports 0 of 95 vendors flagging the domain, and Google Safe Browsing has not issued any warnings. However, it appears on 2 security blocklists: PhishDestroy and Enkrypt. The site lacks an SSL certificate, returns a 404 Not Found page title, and responds with an HTTP 429 status code. Nameservers are limited to one, and no creation date or SSL issuer details are available.
Users who suspect they interacted with heroes-of-mavia.online should immediately change any exposed credentials, particularly for accounts linked to the information entered. Enable two-factor authentication (2FA) on all critical services to mitigate unauthorized access. Monitor financial and online accounts for suspicious activity, and consider reporting the domain to platforms like Google Safe Browsing, PhishTank, or local cybersecurity authorities to aid in broader threat mitigation.
Threat Response Pipeline
Public Blocklist Status
Stored Capture
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive