# migrates-resolv.xyz — SUSPICIOUS > PhishDestroy identifies migrates-resolv.xyz as a credential theft domain with 0/95 VirusTotal detections. ## Summary PhishDestroy has flagged migrates-resolv.xyz as a credential theft domain designed to trick users into entering login details under the guise of DNS migration notices. This domain was flagged on March 27, 2024, with key details confirming its threat: VirusTotal currently shows 0/95 detections, it was registered on March 22, 2026, through PDR Ltd. d/b/a PublicDomainRegistry.com, and resolves to IP 104.21.34.37. The use of a Let’s Encrypt SSL certificate adds a false sense of legitimacy. If you visited this site, do not enter any credentials or personal information. Disconnect from the network immediately, clear your browser cache and cookies, then run a malware scan on your device. Report the domain to your IT team or via PhishDestroy’s submission portal to help disrupt this threat. Stay vigilant for unexpected login prompts or unusual account activity. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2026-03-22 14:41:52 - Registrar: PDR Ltd. d/b/a PublicDomainRegistry.com - IP: 104.21.34.37 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/9b2d1a12-e4be-4e33-988d-2672a6311777 - PhishDestroy: https://phishdestroy.io/domain/migrates-resolv.xyz/ - LLM endpoint: https://phishdestroy.io/domain/migrates-resolv.xyz/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/migrates-resolv.xyz/ Last updated: 2026-03-22