Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@trustname.com.
The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
primeaxiscapital[.]cyou
“Prime Axis Capital”
primeaxiscapital.cyou — Nicht bestätigt. Betrugstyp: Crypto Drainer. Zusammenfassung der Beweislage: VirusTotal 8/91 (alphaMountain.ai, Chong Lua Dao, CRDF, CyRadar, Forcepoint ThreatSeeker); PhishDestroy score 74/100. Registrar: FewMoreTaps OÜ.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
PhishDestroy identifies primeaxiscapital.cyou as a generic phishing threat, specifically a crypto drainer designed to steal cryptocurrency wallet credentials and funds. The domain impersonates Prime Axis Capital, a legitimate financial entity, to trick users into connecting their wallets or entering sensitive information. This threat poses a high risk of financial loss, as crypto drainers can automatically transfer assets once a user interacts with the site.
The evidence against this domain is substantial. VirusTotal reports that 3 out of 95 security vendors flag the domain as malicious, indicating it is actively recognized as a threat. The domain was created on April 21, 2026, which is relatively recent, a common trait among phishing domains. It is registered through FewMoreTaps OU, a registrar known for hosting questionable sites. The domain resolves to IP 198.251.89.144, and its SSL certificate is issued by Let's Encrypt / R12, which provides encryption but does not validate legitimacy. Additionally, the domain appears on 1 security blocklist, confirming its malicious reputation. The page title, "Prime Axis Capital," is a direct impersonation of the legitimate firm.
If a user has visited primeaxiscapital.cyou, they should immediately disconnect any connected wallets and revoke permissions for the site using a blockchain explorer or wallet security tool. It is also advisable to run a full antivirus scan and monitor accounts for unauthorized transactions. Users should never interact with unsolicited links or provide wallet credentials on unfamiliar sites. PhishDestroy recommends verifying all financial platforms through official channels before engaging.
Erkenntnisse zur Netzwerksicherheit Registrar context
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Gespeicherte Aufnahme
Domain-Intelligenz
Technische DetailsDNS, SSL-SANs, Zeitstempel
SHORTDOT-ZONE · ÖFFENTLICHE BELEGE
.cyou
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
ICANN OVERSIGHT
Akkreditierung und RAA-Kontext
Akkreditierung und RAA-Kontext
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologien · 7 identified
Smartsupp is a live chat tool that offers visitor recording feature.
www.smartsupp.com 100 % KonfidenzSelect2 is a jQuery based replacement for select boxes. It supports searching, remote data sets, and infinite scrolling of results.
select2.org 100 % KonfidenzjQuery UI is a collection of GUI widgets, animated visual effects, and themes implemented with jQuery, Cascading Style Sheets, and HTML.
jqueryui.com 100 % KonfidenzjQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100 % KonfidenzHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100 % KonfidenzVirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of primeaxiscapital.cyou · checked Apr 21, 2026
Analyse der Website-Konfiguration
Nachweise und externe Berichte
PD-20260421-8F5D5E Recipient: abuse@trustname.com Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt