migrate-uwu[.]live
“Migrate.fun - Token Migration Platform”
Resumo das evidências
The domain migrate-uwu.live has been identified as a generic phishing site, currently taken offline after being flagged by multiple security sources. While no specific brand impersonation was detected, the domain's structure and behavior indicate it was likely used for credential theft or other data harvesting operations. Its registration through NICENIC INTERNATIONAL GROUP CO., LIMITED and creation date of May 26, 2026, suggest a relatively recent setup, typical of malicious domains that are rapidly deployed and taken down.
Technical analysis reveals that migrate-uwu.live resolves to IP address 172.67.191.4, a Cloudflare IP often abused by threat actors to hide hosting locations. VirusTotal data shows 9 out of 95 security vendors flagging the domain as malicious, while Google Safe Browsing explicitly marks it as a phishing threat. The domain appears on 4 security blocklists and has been found in 2 AlienVault OTX threat intelligence pulses, indicating active tracking by the security community. Notably, no SSL certificate was associated with the domain, further undermining any pretense of legitimacy.
Given its confirmed malicious status and high risk level, users should avoid any interaction with migrate-uwu.live. Organizations are advised to block the domain at the network level and monitor for any related subdomains or similar patterns. Individual users who may have visited the site should run a full security scan and change passwords for any accounts accessed during the session. PhishDestroy recommends staying vigilant against generic phishing domains that lack brand-specific hooks but still pose significant threats through deceptive URLs and credential harvesting techniques.
Instantâneo das evidências enviadas
- Enviado
- Registros do livro-razão
- 1
- ID do caso
PD-20260528-703A9B- Título da página capturada
- Migrate.fun - Token Migration Platform
- Artefato PDF
- Evidência em PDF
Base jurídica
Texto completo da evidência
Section 3.1 of the AUP: The domain migrate-uwu.live is engaged in phishing activities, attempting to deceive users into providing sensitive personal information.
Section 5.2 of the TOS: The registrar reserves the right to suspend services for any domain involved in fraudulent activities, which applies to this domain due to its clear intent to defraud.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): Prohibits unauthorized access to computers and the use of fraudulent schemes to obtain information.
Wire Fraud Statute (18 U.S.C. § 1343): Criminalizes schemes to defraud individuals or entities using electronic communications.
CAN-SPAM Act (15 U.S.C. § 7701 et seq.): Regulates commercial email and prohibits deceptive practices in electronic communications.
Regulatory Note: Failure to take prompt action against this domain may result in liability under applicable laws and potential sanctions from regulatory bodies. Immediate suspension is advised to mitigate risks.
Data Coverage
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | migrate-uwu.live |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 12/08/2026
7 fontes externas monitoradas Sem correspondência
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, nomes TLS e datas
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análise do VirusTotal
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo