# votes-dreamcash.xyz — SUSPICIOUS > votes-dreamcash.xyz engaged in phishing attempts posing as Dreamcash. Stay alert and avoid interacting with this domain to protect your data. ## Summary PhishDestroy has identified votes-dreamcash.xyz as a generic phishing domain targeting unsuspecting users. The domain was associated with deceptive content branded under "Season One | Dreamcash", aiming to lure victims into revealing sensitive information. This classification is based on phishing behavior patterns commonly observed in scams designed to exploit trust in financial-themed or cryptocurrency-related platforms. Technical analysis reveals that votes-dreamcash.xyz resolved to IP address 104.21.32.4 and was registered through PDR Ltd., a known domain registrar, on March 4, 2026. The domain was flagged on four separate security blocklists, and VirusTotal detected suspicious activity with 3 out of 95 security engines identifying potential threats. These indicators underscore its involvement in malicious phishing infrastructure designed to facilitate credential theft or fraud. Currently, the domain votes-dreamcash.xyz is offline and no longer accessible, reflecting active intervention to disrupt its fraudulent operations. Users are advised to remain vigilant and verify the authenticity of websites before sharing personal or financial details. PhishDestroy continues monitoring such domains to provide timely alerts and assist in combating phishing threats online. ## Threat Details - Verdict: SUSPICIOUS - Site status: dead (HTTP 0) - Page title: Season One | Dreamcash ## Domain Intelligence - Registered: 2026-03-04 13:07:01 - Registrar: PDR Ltd. d/b/a PublicDomainRegistry.com - Country: IN - IP: 104.21.32.4 - IP Country: US - IP City: San Francisco - IP Org: AS13335 Cloudflare, Inc. - Nameservers: olof.ns.cloudflare.com uma.ns.cloudflare.com - SSL Issuer: none ## Detection Status - VirusTotal: 3 vendors flagged Vendors: ["Forcepoint ThreatSeeker", "Gridinsoft", "SOCRadar"] - Google Safe Browsing: clean - Blocklists: 4 hits Lists: ["PhishDestroy", "MetaMask", "ScamSniffer", "SEAL"] ## Evidence - Screenshot: https://i.ibb.co/S4tWthfm/0656098f85a2.png - Cloudflare Radar: https://radar.cloudflare.com/scan/6efb85b5-6f82-4207-bda2-db37849bb8e9 - PhishDestroy: https://phishdestroy.io/domain/votes-dreamcash.xyz/ - LLM endpoint: https://phishdestroy.io/domain/votes-dreamcash.xyz/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/votes-dreamcash.xyz/ Last updated: 2026-03-19