getvisual[.]app
“Home - Roblox Visual Executor - Enjoy 100% UNC | 100% sUNC | Free”
Registered just 3 days ago through NICENIC INTERNATIONAL GROUP CO., LIMITED, getvisual[.]app shows a concerning profile. Its IP address is 138.226.237.92, and it has been added to a blocklist, indicating prior detection of phishing activity. The rapid registration and active status further suggest a pattern consistent with phishing operations aimed at capturing user credentials or sensitive information.
Currently, getvisual[.]app is alive, and PhishDestroy is actively monitoring the domain for any changes. We have reported the domain to appropriate authorities and continue to maintain vigilance in tracking its activities to prevent harm to users.
Threat Response Pipeline
Public Blocklist Status
Evidence Capture
Domain Intelligence
ns4.my-ndns.com
abuse@neoncore.biz
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If you have interacted with this domain, entered personal information, or connected a cryptocurrency wallet — take immediate action. Below are resources to help you report the incident and protect yourself.
Report to Your Local Authorities
Select your country to see local cybercrime reporting contacts and complaint templates.
Related Domain Reports
Other Domains on 138.226.237.92
More Domains at NICENIC INTERNATIONAL GROUP CO., LIMITED
About This Report: getvisual.app
This domain security report for getvisual.app is maintained by PhishDestroy's automated threat intelligence pipeline. Our system continuously monitors this domain across 95 security vendors on VirusTotal, 1 public blocklists, URLScan.io.
The site displays a page titled “Home - Roblox Visual Executor - Enjoy 100% UNC | 100% sUNC | Free”.
getvisual.app has been flagged by 2 security vendors as of February 27, 2026.
If you believe this listing is inaccurate, you can submit an appeal. For more information about our methodology, visit our FAQ page.
Stay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive



URLScan Report