mail[.]id-myphone[.]us
“iCloud”
mail.id-myphone.us — Conteúdo indisponível. Representação da marca: Apple. Resumo das evidências: VirusTotal 18/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25); URLScan malicious verdict; Spamhaus DBL_PHISH; PhishDestroy score 95/100.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
On July 29, 2026, the domain mail.id-myphone.us was observed actively serving a generic phishing campaign. DNS resolution returns a single A record pointing to 207.174.212.196; the authoritative nameserver query failed, yielding NS_NOT_FOUND, which suggests either a misconfiguration or use of dynamic DNS. The IP address is currently listed on one public security blocklist, indicating prior abuse. VirusTotal reports that 18 of 91 scanned security vendors flagged the domain as malicious, reflecting a moderate consensus of compromise.
The domain is also listed in the PhishDestroy blocklist, confirming that at least one dedicated anti‑phishing service has taken it down. No HTTPS certificate information is available, and attempts to retrieve HTTP response headers have not yielded a definitive status code, leaving the web server behavior undocumented. The page title and content have not been captured, so the exact lure or credential‑harvesting vector cannot be described. Likewise, no Safe Browsing, OTX, or registrar reputation data were found in the current intelligence set.
Given the confirmed resolution to a known malicious IP, presence on multiple blocklists, and multi‑vendor detection, defenders should treat mail.id-myphone.us as a high‑confidence phishing indicator. Recommended actions include adding the domain and its IP address to outbound and inbound firewall deny lists, updating URL filtering policies to block both the domain and any sub‑domains, and monitoring DNS logs for any queries to the domain. Incident response teams should also correlate any recent authentication attempts or credential submissions that may have originated from this host. Continuous re‑evaluation is advised, as additional intelligence such as SSL certificates, HTTP response codes, or page content could further clarify the threat’s scope.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo