soniclabs[.]my
“Sonic Labs Enters Stronger Phase Under New CEO Mitchell Demeter”
soniclabs.my — Conteúdo indisponível (HTTP 502). Representação da marca: Across; Tipo de golpe: Brand Impersonation. Resumo das evidências: VirusTotal 9/95 (ChainPatrol, alphaMountain.ai, Certego, CRDF, CyRadar); PhishDestroy score 77/100. Registrador: Hostinger.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Analysis indicates that the domain soniclabs.my was registered on December 18, 2025 and is currently offline. The site resolved to IP address 92.113.16.136, which is hosted in Germany and belongs to AS47583 Hostinger International Limited. Registration was performed through Hostinger operations, UAB, and the domain relies on generic parking nameservers ns1.dns-parking.com and ns2.dns-parking.com. No SSL certificate was presented, leaving the HTTP service unencrypted.
The page title observed during the brief activity period was "Sonic Labs Enters Stronger Phase Under New CEO Mitchell Demeter," suggesting an attempt to impersonate the Sonic Labs brand, consistent with the classified scam type of brand impersonation. Security telemetry shows the domain appears on a single blocklist (PhishDestroy) and has a Gridinsoft trust score of 0 out of 100, reflecting a severely low reputation. AlienVault OTX references the domain in three separate threat intelligence pulses, providing additional corroboration of malicious use. VirusTotal scans reported nine detections out of ninety‑five scanning engines, indicating that multiple security products have flagged the domain as malicious.
Uncertainty remains regarding the specific payload or credential‑stealing mechanisms employed, as no further page content or login forms have been captured. Defenders should ensure that the IP address 92.113.16.136 is blocked at network perimeters, add soniclabs.my to internal URL filtering and domain blocklists, and monitor the registrar and hosting provider for any re‑registration attempts. Continuous threat‑intel feeds should be consulted for emerging pulses related to this domain, and any outbound traffic to the identified IP should be inspected for anomalous activity.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo