# trxve.com — SUSPICIOUS > TRXVE.com impersonates legitimate trading platforms to steal crypto investments. VirusTotal shows 0/95 detections. Check the full report. ## Summary PhishDestroy identifies trxve.com as a live fake investment scam site currently under active investigation by threat analysts. This domain is classified under the specific threat type of generic phishing, with a provisional risk level of under_investigation pending further forensic analysis. This domain resolves to IP address 104.21.90.250 and is secured with a Let's Encrypt SSL certificate, which may lend false credibility to unsuspecting users. VirusTotal currently reports 0 out of 95 detection engines flagging this domain, indicating it has not yet been widely blacklisted despite active phishing operations. The domain was registered on April 01, 2026, through the registrar Internet Domain Service BS Corp., a shell provider known for anonymizing registrant details and facilitating malicious infrastructure. These technical indicators—combined with the absence of detections—suggest a recently deployed, possibly automated phishing campaign targeting cryptocurrency investors. To mitigate exposure to this threat, users are advised to avoid visiting trxve.com entirely due to its confirmed phishing nature. Organizations should block the domain at the DNS and firewall levels using the IP 104.21.90.250 and domain name trxve.com. Security teams are encouraged to monitor for similar domains registered through Internet Domain Service BS Corp. or using Let's Encrypt certificates in Q2 2026, as these are common patterns in emerging investment scams. Always verify financial platforms via official channels and report suspicious domains to threat intelligence platforms to aid in early detection. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2026-04-01 12:50:45 - Registrar: Internet Domain Service BS Corp. - IP: 104.21.90.250 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/f41a0165-bd57-4ca5-a265-c5df29a4e00a - PhishDestroy: https://phishdestroy.io/domain/trxve.com/ - LLM endpoint: https://phishdestroy.io/domain/trxve.com/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/trxve.com/ Last updated: 2026-04-01