VirusTotal
5 / 91
apexleaf.shop was included in the PhishDestroy internal listing as of 2026-10-02, with a separate VirusTotal scan on 2026-09-11 reporting detection activity. The domain also received a PageSpeed performance score on 2026-10-02.
PhishDestroy internally listed apexleaf.shop on 2026-10-02. VirusTotal checked the domain on 2026-09-11, recording 5 detections out of 91 scanners with observation time known. A PageSpeed check on 2026-10-02 reported a performance score of 64. The domain was first observed on 2026-10-02.
The PhishDestroy listing and the VirusTotal scanner results are distinct records, each reflecting a different type of observation about apexleaf.shop. The PageSpeed performance score provides an additional metric from the same calendar date as the PhishDestroy entry, but does not indicate the nature of the content or activity on the site. The VirusTotal scan occurred prior to the other records, which is a chronological detail without further implications for the domain's current status.
When reviewing apexleaf.shop, retain the PhishDestroy listing, VirusTotal detection record, and PageSpeed score as separate sources for comparison. Reference these records to inform further investigation or monitoring of the domain. Keep each source's details available for future review and comparison.
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
ns1.dyna-ns.netns2.dyna-ns.netLocation describes the IP network.
26f326e9bb552e41eb933d85cd5686f372d7fb5ea8c45292b80b06fa8aeb0378Saved certificate metadata. Certificate dates without a timezone are shown as stored. Transport encryption does not establish that the site is trustworthy.
Google PageSpeed Insights — mobile performance audit of apexleaf.shop · checked Oct 2, 2026
188.244.119.43. 7 recorded events. These records describe collected evidence, outgoing notifications and publication; they do not confirm a complete investigation or a takedown.
PD-20261002-13D072 Recipient: abuse@rashost.com Policy Violations: Illegal Activities: Active phishing operation targeting victims Fraud & Deception: Impersonation of legitimate services Identity Theft: Collection of credentials under false pretenses Applicable Laws (Unknown): International Anti-Cybercrime Regulations Budapest Convention on Cybercrime Universal Fraud Prevention Laws Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws. Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Select your country to get official cybercrime contacts, or create a complaint draft →.
Template-based draft · optional AI wording assistance requires separate consent
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowSubmit suspicious domains to our threat database — protect the community
ReportRecent phishing reports and observed availability changes
MonitorMonitor live threats or contest this listing if you believe it's a false positive