galxe[.]campaign-checker[.]icu
“Pieni hetki...”
Infrastructure analysis reveals galxe[.]campaign-checker[.]icu is registered via PDR Ltd. d/b/a PublicDomainRegistry.com, registered approximately 6 months ago. The resolved IP address is 172.67.204.135. The domain appears on PhishDestroy and ScamSniffer blocklists.
The domain is currently offline. Following abuse reports filed by PhishDestroy, galxe[.]campaign-checker[.]icu was removed. We continue surveillance for related phishing activity.
PhishDestroy has identified similar threats: Other suspicious domains registered via PDR Ltd. d/b/a PublicDomainRegistry.com: [eligible-sullend.fun](/domain/eligible-sullend.fun), [pump-online.top](/domain/pump-online.top).
Threat Response Pipeline
Public Blocklist Status
Evidence Capture
Domain Intelligence
greg.ns.cloudflare.com
abuse@publicdomainregistry.com
abuse@cloudflare.com
nikolaigorstov@gmail.com
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If you have interacted with this domain, entered personal information, or connected a cryptocurrency wallet — take immediate action. Below are resources to help you report the incident and protect yourself.
Report to Your Local Authorities
Select your country to see local cybercrime reporting contacts and complaint templates.
Related Domain Reports
More Domains at PDR Ltd. d/b/a PublicDomainRegistry.com
About This Report: galxe.campaign-checker.icu
This domain security report for galxe.campaign-checker.icu is maintained by PhishDestroy's automated threat intelligence pipeline. Our system continuously monitors this domain across 95 security vendors on VirusTotal, 2 public blocklists, URLScan.io.
The site displays a page titled “Pieni hetki...”.
galxe.campaign-checker.icu has been flagged by 5 security vendors as of February 28, 2026.
If you believe this listing is inaccurate, you can submit an appeal. For more information about our methodology, visit our FAQ page.
Stay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive



URLScan Report