# axbonigroup.testdev.sbs — MALICIOUS > axbonigroup.testdev.sbs has been flagged for phishing risks. Stay cautious, avoid sharing personal info, and do not interact with this domain. ## Summary PhishDestroy identifies axbonigroup.testdev.sbs as a medium-risk domain associated with generic phishing threats. This classification indicates the domain was likely used to impersonate legitimate services or deceive users into divulging sensitive information. Supporting evidence includes the domain's registration through Dynadot LLC and its creation date set in the future (February 21, 2026), suggesting potential manipulation or testing. The domain currently resolves to the IP address 198.251.89.220 and shows up on one security blocklist. VirusTotal flagged it by 7 out of 95 participating security vendors. Furthermore, the page title 'Index of /' indicates that no active phishing page was found online at the time of this report. Mitigation efforts have resulted in this domain being taken offline, which reduces immediate risk. Users should remain vigilant, avoid clicking any links related to this domain, and ensure anti-phishing protections are enabled. Given its offline status and partial detection by security tools, axbonigroup.testdev.sbs currently poses a limited but notable phishing risk. ## Threat Details - Verdict: MALICIOUS - Site status: dead (HTTP 0) - Page title: Index of / ## Domain Intelligence - Registered: 2026-02-21 07:01:08 - Registrar: Dynadot LLC - Country: US - IP: 198.251.89.220 - IP Country: US - IP City: Cheyenne - IP Org: AS53667 FranTech Solutions - Nameservers: ["ns27.asurahosting.com", "ns28.asurahosting.com"] - SSL Issuer: none ## Detection Status - VirusTotal: 7 vendors flagged Vendors: ["CyRadar", "Fortinet", "Netcraft", "Seclookup", "SOCRadar", "Sophos", "Webroot"] - Google Safe Browsing: clean - Blocklists: 1 hits Lists: ["PhishDestroy"] ## Evidence - Screenshot: https://urlscan.io/screenshots/019a30c2-02d6-7009-b4e1-607fa60284a6.png - Cloudflare Radar: https://radar.cloudflare.com/scan/d7048e29-4253-4787-b000-50486e56d2fc - PhishDestroy: https://phishdestroy.io/domain/axbonigroup.testdev.sbs/ - LLM endpoint: https://phishdestroy.io/domain/axbonigroup.testdev.sbs/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/axbonigroup.testdev.sbs/ Last updated: 2026-03-19