wordpress[.]musiclol[.]me
“shopify”
wordpress.musiclol.me — Non vérifié. Usurpation de l'identité de la marque : Facebook; Type d'arnaque : Social Media Phishing. Résumé des preuves: VirusTotal 19/95 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CRDF); CF Radar malicious; PhishDestroy score 95/100. Bureau d’enregistrement: GANDI SAS.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain wordpress.musiclol.me is identified as a brand impersonation threat, specifically targeting Facebook. The risk level is elevated, and the domain has been taken offline. The page title 'shopify' does not align with the brand being impersonated, suggesting potential multi-faceted attack vectors or a misconfiguration.
Infrastructure analysis reveals that the domain resolves to the IP address 52.45.225.66, which is located in the United States and is part of the AS14618 network operated by Amazon.com, Inc. The domain was created on June 28, 2025, and is registered through GANDI SAS. The SSL certificate is issued by Amazon RSA 2048 M02. According to VirusTotal, 19 out of 95 security vendors flag this domain as malicious. The domain appears on two security blocklists: PhishDestroy and PhishingDB. Google Safe Browsing (GSB) has also marked it as a phishing site.
The domain is currently offline, which reduces the immediate risk to potential victims. However, the historical data and blocklist entries indicate that the domain was actively used in phishing campaigns. While the site is not currently accessible, users should remain cautious of any subsequent attempts to re-register or reactivate the domain. Security teams are advised to monitor the domain for any signs of reactivation and to implement additional protective measures to prevent exposure to similar threats. Users who have interacted with the domain should monitor their accounts for any unauthorized activity and consider changing their passwords.
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Analyse VirusTotal
Preuves archivées
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif