no-mura.vip
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of no-mura.vip
no-mura.vip appears to be a very recently registered domain that resembles the well-known Nomura brand in its spelling. Based on the domain pattern, classification data, and similarity findings, it may have been created to imitate or capitalize on recognition associated with that financial brand rather than to represent an established independent service.
Multiple web-classification sources categorize the domain as phishing or fraud-related, while another source labels it as a newly registered website. The domain is only a few days old, has no meaningful traffic ranking, and does not show signs of being a mature public-facing business property based on the available scan context.
Because the domain closely mirrors a known financial brand name while using a different extension and altered spelling, it may be intended to attract users who mistype or misread the legitimate address. That pattern is commonly associated with impersonation-oriented websites, especially in finance-related contexts.
Safety Assessment for no-mura.vip
The scan results indicate elevated risk signals at the time of this scan. The domain was flagged by 8 out of 91 security engines, and multiple classification providers labeled it as phishing or fraud-related. In addition, a major threat database listed the site for social-engineering activity, which is a strong content-risk indicator compared with weaker reputation-only signals.
There are also contextual concerns beyond the engine detections. The domain is only 4 days old, has no traffic ranking, and closely resembles nomura.com in a way that may indicate a look-alike intended to mislead visitors. The domain's IP address is also listed on one mail-reputation blocklist; that signal alone would be minor, but in this case it appears alongside stronger phishing-related findings.
Although the malware scan did not detect malicious files in the limited content it checked, that does not offset the broader phishing indicators. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The domain uses a valid Let's Encrypt SSL certificate expiring on 2026-10-19, which indicates HTTPS was configured at the time of the scan. DNSSEC appears to be unsigned, and the domain uses share-dns.com / share-dns.net nameservers. The site resolves to IP address 209.209.50.211 and appears to be hosted by Sondercloud Limited in Chai Wan, Hong Kong.
From a security posture perspective, the most notable technical concerns are not the TLS settings themselves but the surrounding indicators: extremely recent registration, unsigned DNSSEC, absent traffic history, and reputation findings consistent with phishing activity. The web server and protocol details were not identified in the provided scan data.
Share your experience with this website. Was it safe? Did you encounter any issues?