voting-apyx[.]finance
“Apyx”
This domain, voting-apyx.finance, is identified as a cryptocurrency phishing site impersonating Apyx, a known entity in the decentralized finance sector. The domain is currently offline, though prior analysis confirms its use in fraudulent schemes targeting users of blockchain-based platforms. The infrastructure was designed to mimic legitimate cryptocurrency services, likely to harvest credentials or private keys from unsuspecting victims. Analysis indicates the domain was registered on June 10, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED. It resolved to the IP address 104.21.29.241 and utilized an SSL certificate issued by Google Trust Services, a common tactic to appear legitimate. Security vendors flagged voting-apyx.finance as malicious, with 3 of 95 VirusTotal engines detecting it. The domain also appeared on 4 security blocklists and was referenced in 2 AlienVault OTX threat intelligence pulses. Additional scrutiny reveals a Gridinsoft trust score of 0 out of 100, further confirming its malicious nature. Given the domain's current offline status, immediate threats are mitigated; however, similar infrastructure may re-emerge under different domains. Organizations and individuals are advised to monitor for domains registered through the same registrar or resolving to the same IP range. Blocking the domain and its associated IP at the network level is recommended. Users should verify the authenticity of cryptocurrency platforms by cross-referencing official sources and avoiding interaction with domains lacking verifiable trust indicators.
Network Security Intelligence Registrar context
Threat Response Pipeline
Public Blocklist Status
Stored Capture
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-23 02:50:22 UTC
VirusTotal Analysis
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of voting-apyx.finance · checked Jun 25, 2026
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive