# x-net.app — SUSPICIOUS > x-net.app mimics legitimate login portals to steal credentials. Resolves to 104.21.83.172. Avoid entering any credentials on this domain. ## Summary PhishDestroy identifies x-net.app as an active phishing domain under investigation for hosting a counterfeit login portal designed to harvest user credentials. The threat type is classified as generic_phishing, indicating a high likelihood of impersonation attacks targeting unsuspecting users. The risk level remains under_investigation due to ongoing analysis, but the domain’s recent creation and infrastructure choices suggest elevated malicious intent. Users should exercise extreme caution and avoid interacting with this domain entirely. This domain was flagged with 0 detections out of 95 on VirusTotal, indicating it has not yet been widely recognized as malicious by antivirus engines. It was registered through Tucows Domains Inc and resolves to IP address 104.21.83.172, which is hosted within Cloudflare’s infrastructure. The domain was created on March 31, 2026, a suspiciously recent date that aligns with the rapid deployment of phishing campaigns. Despite the use of a Let's Encrypt SSL certificate, which may lend false legitimacy, no trustworthy reputation or blocklist entries were detected at the time of analysis. To mitigate exposure to this phishing threat, users should immediately block x-net.app at the network or DNS level. Avoid clicking any links referencing this domain in emails, messages, or websites. If credentials were entered, change passwords immediately and enable multi-factor authentication on all related accounts. Report the domain to your email provider and cybersecurity team. Organizations should monitor outbound connections to 104.21.83.172 for signs of credential exfiltration. Always verify URLs before entering sensitive information and rely on official, bookmarked websites for authentication. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2026-03-31 18:48:40 - Registrar: Tucows Domains Inc - IP: 104.21.83.172 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/946b3c18-a0dd-42bd-a74a-edbcdd09dd89 - PhishDestroy: https://phishdestroy.io/domain/x-net.app/ - LLM endpoint: https://phishdestroy.io/domain/x-net.app/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/x-net.app/ Last updated: 2026-03-31