best-mix[.]club
best-mix.club — Contenuto non disponibile. Riepilogo delle prove: VirusTotal 2/93 (alphaMountain.ai, SOCRadar); PhishDestroy score 68/100. Registrar: NameCheap.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Analysis of best-mix.club confirms its classification as a generic phishing domain with elevated risk indicators. The domain was registered on February 21, 2026, through NameCheap, Inc., and resolved to IP address 67.223.118.133, hosted on AS22612 (Namecheap, Inc.) in the United States. Infrastructure analysis reveals the use of LiteSpeed web server technology and nameservers dns1.namecheaphosting.com and dns2.namecheaphosting.com. The SSL certificate is issued by Sectigo Limited under the Sectigo RSA Domain Validation Secure Server CA, a common certificate authority for both legitimate and malicious domains. Detection data indicates the domain was flagged by two of 93 security vendors on VirusTotal, though the specific detection context remains unverified.
It appears on one security blocklist and was blocked by PhishDestroy. AlienVault OTX records the domain in a single threat intelligence pulse, suggesting limited but confirmed malicious activity. Gridinsoft assigned a trust score of 0/100, reinforcing its high-risk classification. As of July 24, 2026, the domain is offline, though this status may change without notice. No specific brand target, phishing kit, or scam type has been identified in available data.
The exact content and intended victim profile remain unconfirmed due to the domain's current offline status. Defenders are advised to treat best-mix.club as a confirmed phishing threat and maintain blocklist entries. Monitoring for reactivation or changes in hosting infrastructure is recommended, particularly given its association with a known registrar frequently used for malicious domains. Further analysis should focus on historical WHOIS records and any available web archive captures to determine the nature of the phishing campaign.
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologie · 1 identified
High-performance web server compatible with Apache configurations.
Analisi di VirusTotal
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo