01vhl[.]mjt[.]lu
“Technical subdomain”
01vhl.mjt.lu — Non vérifié. Type d'arnaque : Credential Phishing. Résumé des preuves: VirusTotal 2/91 (Forcepoint ThreatSeeker, Gridinsoft); PhishDestroy score 71/100. Bureau d’enregistrement: OVH.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
This domain, 01vhl.mjt.lu, is identified as a generic phishing infrastructure targeting user credentials through deceptive login interfaces. Analysis indicates no direct association with a specific brand or drainer kit, though the subdomain structure and page title ('Technical subdomain') suggest an operational framework designed to evade detection while harvesting sensitive information. The lack of a recognizable brand affiliation increases the likelihood of broad, opportunistic targeting rather than a focused campaign against a single entity. Infrastructure analysis reveals the domain is registered through OVH and resolves to the IP address 35.241.186.140. It holds a VirusTotal detection score of 2/95 security vendors, indicating limited but confirmed malicious classification. The domain appears on three security blocklists—PhishDestroy, PhishingDB, and OISD—further validating its phishing designation. The SSL certificate is issued by DigiCert Inc, a detail that may lend a superficial appearance of legitimacy while failing to mitigate the underlying threat. No creation date is available in the provided data, but the domain's presence on multiple blocklists suggests it has been active long enough to attract scrutiny. The domain is currently offline, reducing immediate risk of user exposure. However, the infrastructure remains a latent threat, as phishing domains frequently resurface under altered subdomains or IP addresses. The elevated risk level stems from the domain's prior use in credential harvesting and its inclusion on multiple security blocklists. Users and organizations are advised to monitor for related indicators of compromise, including the IP address 35.241.186.140 and any subdomains under mjt.lu. Network-level blocking of the domain and associated IP is recommended to prevent potential reactivation or lateral movement within phishing campaigns.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Analyse VirusTotal
Preuves archivées
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of 01vhl.mjt.lu · checked Jun 27, 2026
Analyse de la configuration du site
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif