# mirubit.com — SUSPICIOUS > Mirubit.com is under investigation for generic phishing threats. Stay alert and avoid interaction. Learn more at PhishDestroy.io. ## Summary PhishDestroy identifies mirubit.com as a domain under investigation for generic phishing activity. While no direct detections have been reported by security vendors, its suspicious registration details warrant caution. The domain resolves to IP 172.67.182.123 and was registered through Hello Internet Corp on February 14, 2026. Despite zero VirusTotal detections, the domain's recent creation and unknown intent raise concerns about potential misuse. Currently taken offline, mirubit.com remains unavailable to users. It is recommended that organizations monitor this domain for any resurgence and maintain vigilance against phishing attempts linked to newly registered domains. ## Threat Details - Verdict: SUSPICIOUS - Site status: dead (HTTP 403) ## Domain Intelligence - Registered: 2026-02-14 15:44:24 - Registrar: Hello Internet Corp - Country: US - IP: 172.67.182.123 - Nameservers: jasmine.ns.cloudflare.com roman.ns.cloudflare.com ## Detection Status - VirusTotal: 0 vendors flagged Vendors: [] - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Screenshot: https://i.ibb.co/4gKYBvLP/e3798403d08d.png - Cloudflare Radar: https://radar.cloudflare.com/scan/f1e7ac30-fe7b-4efe-93de-2e2924ac7390 - PhishDestroy: https://phishdestroy.io/domain/mirubit.com/ - LLM endpoint: https://phishdestroy.io/domain/mirubit.com/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/mirubit.com/ Last updated: 2026-03-19