# wars-reward.xyz — SUSPICIOUS > Avoid the phishing domain wars-reward.xyz. Protect your data by not interacting with suspicious sites and verify URLs carefully. ## Summary PhishDestroy identifies the domain wars-reward.xyz as an active phishing threat currently posing a medium risk to users. This domain, created recently on March 13, 2026, attempts to deceive victims by mimicking legitimate financial or reward-related services, as suggested by its page title "$WAR DISTRIBUTION." Phishing attacks like this aim to steal sensitive information such as login credentials, personal data, or financial details by tricking users into submitting them on fraudulent websites. This phishing scam operates by presenting a seemingly legitimate interface that entices users to interact, possibly promising rewards or distributions related to cryptocurrency or online assets. The domain is registered through NiceNIC International Group Co., Limited and resolves to the IP address 188.114.97.3. It has been flagged on one security blocklist and detected by 4 out of 95 security vendors on VirusTotal, underscoring its suspicious nature. These technical indicators, combined with its recent creation date, suggest it is a relatively new but active phishing campaign designed to exploit unsuspecting visitors. If you have visited wars-reward.xyz, it is critical to avoid entering any personal or financial information on the site. Users should immediately scan their devices with reputable antivirus and anti-malware tools to detect possible compromises. Changing passwords for accounts that may have been exposed and monitoring financial statements for unauthorized activities are essential steps. Reporting the domain to your IT department or relevant cybersecurity authorities can help prevent further exposure. Staying vigilant and verifying URLs before interacting with any online reward or distribution offers is key to avoiding these threats. ## Threat Details - Verdict: SUSPICIOUS - Site status: alive (HTTP 530) - Page title: $WAR DISTRIBUTION ## Domain Intelligence - Registered: 2026-03-13 03:07:02 - Registrar: NiceNIC International Group Co., Limited - Country: HK - IP: 188.114.97.3 - IP Country: US - IP City: San Francisco - IP Org: AS13335 Cloudflare, Inc. - Nameservers: emma.ns.cloudflare.com vin.ns.cloudflare.com - SSL Issuer: Let's Encrypt / E7 ## Detection Status - VirusTotal: 4 vendors flagged Vendors: ["alphaMountain.ai", "Fortinet", "Gridinsoft", "SOCRadar"] - Google Safe Browsing: clean - Blocklists: 1 hits Lists: ["PhishDestroy"] ## Evidence - Screenshot: https://urlscan.io/screenshots/019ce543-6096-7029-85dc-c6b8c802dc22.png - PhishDestroy: https://phishdestroy.io/domain/wars-reward.xyz/ - LLM endpoint: https://phishdestroy.io/domain/wars-reward.xyz/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/wars-reward.xyz/ Last updated: 2026-03-19