whats-xtu[.]vip
Domain Security & Threat Intelligence Report
Analyst Security Overview
AI-GeneratedThe domain whats-xtu.vip was designed to impersonate legitimate messaging services, aiming to capture user credentials through deceptive tactics. With a VirusTotal score of 16/95, this domain has been flagged by multiple security solutions, indicating a substantial risk of phishing activities.
Registered with Gname.com Pte. Ltd., this domain is 129 days old and has an associated IP address of 198.18.2.71. It has appeared on blocklists twice, reflecting its malicious intent. The domain's recent activity suggests it was set up for phishing, now recognized and flagged by various platforms.
PhishDestroy has taken proactive measures by reporting and monitoring the domain. Currently, it is marked as dead, ensuring that potential threats related to this domain are mitigated. Continued vigilance in monitoring such domains is essential to safeguard against similar attacks.
Threat Response Pipeline
Public Blocklist Status
Website Screenshot
Domain Intelligence
a3.share-dns.com
b.share-dns.net
b3.share-dns.net
complaint@gname.com
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If you have interacted with this domain, entered personal information, or connected a cryptocurrency wallet — take immediate action. Below are resources to help you report the incident and protect yourself.
Report to Your Local Authorities
Select your country to see local cybercrime reporting contacts and complaint templates.
Related Domain Reports
Other Domains on 198.18.2.71
More Domains at Gname.com Pte. Ltd.
Stay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive
URLScan Report