musicient[.]site
musicient.site — 内容不可用. 品牌冒充:Revolut; 诈骗类型:Wallet/seed Phishing. 证据摘要: VirusTotal 9/95 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, Chong Lua Dao, CyRadar); PhishDestroy score 82/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis as of July 24, 2026 indicates that musicient.site was registered on February 21, 2026 and is presently offline. The domain resolves to the IP address 64.29.17.65, which belongs to Amazon.com, Inc. (AS16509) and is geolocated in the United States. The SSL certificate presented is identified as R10, but no further validation details are available. Reputation services rate the site extremely poorly: Gridinsoft assigns a trust score of 0 out of 100, Scamadviser records a score of 1 out of 100, and the domain appears on a single security blocklist.
PhishDestroy has actively blocked the domain, and VirusTotal reports that nine of ninety‑five scanning engines flag the host as malicious. The primary malicious behavior attributed to the domain is brand impersonation of Revolut, specifically targeting wallet or seed credentials. The evidence suggests the site was used to harvest authentication data from victims who believed they were interacting with an official Revolut service. Because the site is already taken offline, active mitigation is limited to ensuring that any cached or residual references are cleared from internal URL filtering and DNS security products.
Defenders should continue to block the resolved IP 64.29.17.65 at the network perimeter, add the domain to enterprise allow‑list exclusions, and monitor for any new domains that resolve to the same Amazon hosting range exhibiting similar brand‑impersonation patterns. Ongoing threat‑intelligence sharing with upstream providers is recommended to capture any resurgence attempts. At present, the lack of a live page prevents verification of page content, so the precise phishing kit and page structure remain unknown.
威胁响应 Pipeline
公共封禁名单状态
取证情报
VirusTotal 分析
证据与外部报告
“http://acedrainer.com”
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。