myro-migration[.]netlify[.]app
“Migrate.fun - Token Migration Platform”
myro-migration.netlify.app — Conteúdo indisponível. Tipo de golpe: Crypto Drainer. Resumo das evidências: VirusTotal 13/93 (Criminal IP, alphaMountain.ai, BitDefender, CRDF, CyRadar); 1 external blocklist match (ScamSniffer); CF Radar malicious; PhishDestroy score 89/100. Registrador: Name.com.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
myro-migration.netlify.app is a Netlify‑hosted site that surfaced on February 21, 2026 and resolves to the Amazon‑owned address 98.84.224.111 in the United States (ASN14618). The TLS certificate presented is a DigiCert Global G2 RSA SHA‑256 chain issued in 2020, indicating that the domain was able to obtain a legitimate certificate despite its short lifespan. The HTTP response returns a 404 status, and the site is currently taken offline, which aligns with the “offline” status reported by monitoring services. The page title returned by the server, “Migrate.fun – Token Migration Platform,” suggests the domain was intended to masquerade as a token migration service, likely to lure cryptocurrency users.
The infrastructure details show the use of Netlify’s CDN and HSTS headers, a common pattern for abuse kits that rely on fast provisioning of phishing pages. The domain appears on two independent blocklists, PhishDestroy and ScamSniffer, and 13 of 93 VirusTotal scanners have flagged it, providing additional confirmation of malicious intent. Registration was performed through Name.com, a registrar frequently used for rapid domain acquisition. No further behavioral data, such as captured traffic or payloads, is publicly available, leaving the exact phishing workflow unverified.
Defenders should add the IP address 98.84.224.111 to network deny lists, enforce DNS sink‑hole rules for the domain, and monitor Netlify‑related traffic for similar short‑lived domains. Continuous observation of blocklist updates and VirusTotal re‑scans is recommended to capture any future re‑activation of the site. Organizations handling cryptocurrency assets should treat any unsolicited requests referencing “Migrate.fun” as suspicious and verify the source through official channels.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 3 identified
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com 100% de confiançaHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% de confiançaAnálise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of myro-migration.netlify.app · checked Mar 2, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo