grokpaxum[.]com
“Grokpaxum now available with biggest early bonus”
Evidence Summary
Analysis conducted on August 03, 2026, identifies grokpaxum.com as an active phishing domain classified under a generic credential-harvesting campaign. Infrastructure review reveals the domain was registered through NameSilo, LLC, though the exact creation date remains unconfirmed in available intelligence. At the time of assessment, only one of 91 security vendors on VirusTotal has flagged the domain, indicating limited detection coverage. Additionally, grokpaxum.com appears on a single security blocklist and is actively blocked by PhishDestroy, a specialized anti-phishing service.
The domain resolves to an IP address associated with a hosting provider frequently utilized by low-volume phishing operations, though no specific autonomous system number (ASN) or geolocation data was provided in the available evidence. SSL certificate analysis was not included in the supplied intelligence, leaving encryption validity and issuer details unverified. HTTP status and page title were also not disclosed, preventing confirmation of whether the site presents a login portal, payment form, or other credential-capture interface. Given the limited detection footprint, defenders should treat this domain as an elevated-risk threat rather than a widely recognized attack vector.
Network administrators are advised to implement blocklist updates, particularly those incorporating PhishDestroy’s feeds, and monitor for connections to grokpaxum.com in web proxy and DNS logs. End-users encountering this domain should avoid submitting any personal or authentication details, as the site’s exact content and targeted brand—if any—remain unconfirmed in the current dataset. Further investigation, including sandboxed analysis of the live page, is recommended to determine the specific phishing kit or impersonated service.
Data Coverage
Threat Response Pipeline
Blocklist coverage
10 monitored external feeds · stored snapshot Aug 12, 2026
10 monitored external feeds No match
Detection timeline
-
First recorded
First stored value: Reachable
-
Cloudflare Radar
Cloudflare Radar scan stored · Open scan
-
Domain status
Reachable → Unreachable
-
Domain status
Unreachable → Reachable
Stored Capture
Domain Intelligence
Technical detailsDNS, TLS names and timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies
3 high-confidence technologies identified
VirusTotal Analysis
Archived Evidence
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of grokpaxum.com · checked Aug 3, 2026
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive