# nemo89.net — MALICIOUS > Stay alert: nemo89.net is an active phishing domain targeting users. Learn about its risks and how to protect yourself. ## Summary PhishDestroy identifies nemo89.net as an active medium-risk phishing domain targeting unsuspecting users. Created recently on June 17, 2024, it is currently being used to deceive victims with generic phishing tactics aimed at stealing sensitive information or credentials. Users should remain vigilant and avoid interacting with suspicious communications referencing this domain. The domain nemo89.net was registered via NameSilo, LLC, and resolves to the IP address 79.133.46.236. VirusTotal analysis shows that 5 out of 95 security vendors currently flag this domain, indicating emerging recognition of its malicious intent. Given the short lifespan and suspicious registration details, nemo89.net’s infrastructure suggests it is part of a rapidly deployed phishing campaign designed to evade long-term detection. At present, nemo89.net remains active and continues to pose a threat. PhishDestroy recommends organizations and users block this domain at network and email gateways and monitor for any related phishing attempts. Regular updates to threat intelligence feeds and user awareness training will help mitigate risks associated with this evolving phishing campaign identified by the unique seed 9078e5. ## Threat Details - Verdict: MALICIOUS - Site status: alive (HTTP 200) - Page title: NEMO89 : NEMO 89 PUBG Mobile Update Terbaru Penuh Seru ## Domain Intelligence - Registered: 2026-03-07 13:07:01 - Registrar: NameSilo, LLC - IP: 79.133.46.236 - Nameservers: ns1.nemo89.net ns1.ulltaahhoosst.buzz ns2.nemo89.net ns2.ulltaahhoosst.buzz ## Detection Status - VirusTotal: 19 vendors flagged Vendors: ["ADMINUSLabs", "BitDefender", "CRDF", "Cluster25", "CyRadar", "DNS8", "Forcepoint ThreatSeeker", "Fortinet", "G-Data", "Gridinsoft", "Kaspersky", "Lionic", "MalwareURL", "SOCRadar", "Seclookup", "Sophos", "Trustwave", "VIPRE", "alphaMountain.ai"] - Google Safe Browsing: clean - Blocklists: 1 hits Lists: ["PhishDestroy"] ## Evidence - Screenshot: https://i.ibb.co/vxxR3h0P/aa3cbf171ec5.png - Cloudflare Radar: https://radar.cloudflare.com/scan/445e43c2-0e3f-49dc-ad90-5df95a5ca485 - PhishDestroy: https://phishdestroy.io/domain/nemo89.net/ ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/nemo89.net/ Last updated: 2026-03-14