aerlyxsa[.]digital
“Schweizer Vignette – Aerlyxsa Digital”
Stored observation
Observed title contrast
Evidence Summary
The domain aerlyxsa.digital, created on 22 February 2026 and registered through Dynadot LLC, is currently active and serves a page titled “Schweizer Vignette – Aerlyxsa Digital”. DNS resolution points to the IP address 188.114.96.3, which is assigned to Cloudflare, Inc. (AS13335) and geolocated to the United States. The domain is protected by a Google Trust Services certificate issued under the WE1 intermediate, and HTTP requests return a 200 OK status over HTTP/3, confirming that the site is reachable and functional.
Infrastructure analysis shows the domain uses Cloudflare’s name servers bruce.ns.cloudflare.com and kehlani.ns.cloudflare.com, indicating reliance on Cloudflare’s edge network for delivery and obscuring of the origin server. Reputation metrics are uniformly negative: Gridinsoft assigns a trust score of 0 out of 100, and the domain appears on a single security blocklist that is actively enforced by PhishDestroy. VirusTotal scans report that three of ninety‑five security vendors flagged the domain, reinforcing the suspicion of malicious activity.
While the exact phishing payload or credential‑harvesting mechanism has not been publicly disclosed, the combination of a high‑risk classification, low trust score, active blocklist entry, and multiple vendor detections suggests a deliberate phishing campaign. Defenders should block aerlyxsa.digital at the DNS and proxy layers, consider denying traffic to its hosting IP 188.114.96.3, and monitor for any related indicators of compromise that reference the observed page title or Cloudflare name servers. Continuous re‑evaluation is advised, as further analysis may reveal additional malicious components or victim targeting details.
Data Coverage
Network Security Intelligence
Threat Response Pipeline
Blocklist coverage
10 monitored external feeds · stored snapshot Aug 12, 2026
10 monitored external feeds No match
Detection timeline
-
VirusTotal
3 → 4
Stored Capture
Domain Intelligence
Technical detailsDNS, TLS names and timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analysis
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of aerlyxsa.digital · checked Mar 2, 2026
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive