mn[.]com-cagjk[.]my
“Where's My Refund? | Minnesota Department of Revenue”
mn.com-cagjk.my — Contenu indisponible (HTTP 502). Usurpation de l'identité de la marque : Mngov. Résumé des preuves: VirusTotal 12/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, Forcepoint ThreatSeeker); URLScan malicious verdict; PhishDestroy score 86/100.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
mn.com-cagjk.my was registered on June 12, 2026 and is currently resolving to the IP address 104.21.73.144. The domain appears on a single external blocklist and has been actively listed by the PhishDestroy mitigation service. VirusTotal has recorded twelve positive detections out of ninety‑one submitted scanners, indicating that a notable minority of security products consider the host malicious. The risk rating assigned by the internal taxonomy is elevated and the operational status is marked as active, suggesting ongoing exploitation.
Infrastructure analysis shows the address 104.21.73.144 is hosted on a cloud service provider, a common choice for short‑lived phishing infrastructure because of rapid provisioning and dynamic IP pools. No TLS certificate details, HTTP response codes, or page title information have been published, so the exact content served by the domain remains unverified. Likewise, Safe Browsing, OTX, and other reputation services have not been referenced in the supplied data, leaving those vectors unconfirmed. Given the observed detections, defenders should block the domain at perimeter firewalls, DNS resolvers, and proxy layers.
Security appliances that reference the PhishDestroy blocklist should be updated to ensure the entry is enforced. Incident response teams should monitor for outbound connections to 104.21.73.144 and correlate any suspicious authentication attempts with the domain name. Continuous re‑scanning of the host on VirusTotal and other sandboxes is advised to capture potential payload evolution. Until further forensic details become available, the recommendation is to treat mn.com-cagjk.my as a confirmed phishing host and to apply comprehensive network‑level mitigations.
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
Analyse VirusTotal
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif