# rewards-usefelix.xyz — SUSPICIOUS > Avoid rewards-usefelix.xyz, a phishing domain now offline but previously flagged for scams. Stay cautious and never share personal info. ## Summary PhishDestroy has identified rewards-usefelix.xyz as a phishing domain posing a medium risk to internet users. This site was designed to deceive visitors by mimicking legitimate pages, aiming to steal sensitive information such as login credentials or financial details. Although currently offline, it previously appeared on multiple security blocklists, indicating its malicious intent. The phishing scheme behind rewards-usefelix.xyz involved luring users with promises related to rewards, as suggested by the page title "Felix." Once users visited the site, they were likely prompted to enter personal information under false pretenses. The domain was registered through a known registrar and resolved to IP 188.114.97.3, with a small number of security vendors flagging it as suspicious. If you have recently visited rewards-usefelix.xyz, it is important to remain vigilant. Avoid providing any personal or financial data, and if you did share any information, consider changing your passwords immediately and monitor your accounts for unusual activity. Using updated antivirus software and reporting suspicious emails or links can help protect you from similar threats in the future. ## Threat Details - Verdict: SUSPICIOUS - Site status: dead (HTTP 403) - Page title: Felix ## Domain Intelligence - Registered: 2026-03-10 11:07:02 - Registrar: PDR Ltd. d/b/a PublicDomainRegistry.com - Country: IN - IP: 188.114.97.3 - IP Country: US - IP City: San Francisco - IP Org: AS13335 Cloudflare, Inc. - Nameservers: alina.ns.cloudflare.com ernest.ns.cloudflare.com - SSL Issuer: none ## Detection Status - VirusTotal: 3 vendors flagged Vendors: ["alphaMountain.ai", "Forcepoint ThreatSeeker", "SOCRadar"] - Google Safe Browsing: clean - Blocklists: 3 hits Lists: ["PhishDestroy", "MetaMask", "SEAL"] ## Evidence - Screenshot: https://urlscan.io/screenshots/019cd74f-f19e-7408-a17e-b2637e6c7784.png - Cloudflare Radar: https://radar.cloudflare.com/scan/709cf35c-de5d-4523-b9dd-ada1fbdf78ff - PhishDestroy: https://phishdestroy.io/domain/rewards-usefelix.xyz/ - LLM endpoint: https://phishdestroy.io/domain/rewards-usefelix.xyz/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/rewards-usefelix.xyz/ Last updated: 2026-03-19