mymusikarisma[.]eu
“Create Next App”
mymusikarisma.eu — 隐形 · 可达. 诈骗类型:Generic Phishing. 证据摘要: VirusTotal 7/94 (alphaMountain.ai, CRDF, DNS8, Fortinet, Gridinsoft); URLQuery 6 alerts; CF Radar malicious; cloaking observed; PhishDestroy score 83/100. 注册商: DMNS - Domínios.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
On July 24, 2026, analysts observed that the domain mymusikarisma.eu was registered on March 11, 2026 through DMNS - Domínios, S.A. The domain resolves to the IP address 64.29.17.1, which belongs to ASN16509 operated by Amazon.com, Inc., and is located in the United States. DNS resolution is handled by Vercel name servers (ns1.vercel-dns.com, ns2.vercel-dns.com), and the hosting platform reports Vercel technology with HTTP Strict Transport Security (HSTS) enabled. The site presented the page title "Create Next App" and employed a Let’s Encrypt R13 certificate, indicating that TLS was correctly configured at the time of capture. VirusTotal records show that seven of ninety-four security vendors flagged the domain, suggesting partial detection across scanning engines.
AlienVault OTX lists the domain in two separate threat intelligence pulses, reinforcing its association with malicious activity. The domain appears on a single public security blocklist and has been actively blocked by the PhishDestroy mitigation service. Reputation services assign extremely low trust scores—Scamadviser rates the domain 1 out of 100 and Gridinsoft rates it 0 out of 100—reflecting a high likelihood of abuse. The infrastructure is linked to an Airdrop Scam phishing kit, although the exact content of the compromised page has not been disclosed beyond the generic page title.
Current status indicates the site is offline, yet the elevated risk rating remains relevant for historical analysis. Defenders should continue to block the domain at network perimeter and endpoint layers, monitor for any resurgence of the same IP or hosting configuration, and update threat feeds with the observed identifiers (IP, ASN, name servers, SSL fingerprint) to prevent re‑use. Uncertainty remains regarding the specific victim targeting and the full payload delivered, as no visual or form details are available.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | www.mymusikarisma.eu |
malicious | Sinkholed |
| Quad9 DNS | www.mymusikarisma.eu |
malicious | Sinkholed |
| Hagezi Threat Feed | www.mymusikarisma.eu |
malicious | Sinkholed |
| Hagezi Threat Feed | mymusikarisma.eu |
malicious | Sinkholed |
| Quad9 DNS | mymusikarisma.eu |
malicious | Sinkholed |
| DNS4EU | mymusikarisma.eu |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of mymusikarisma.eu · checked Mar 25, 2026
证据与外部报告
PD-20260312-0686CE Recipient: abuse@vercel.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。