xa21p[.]icu
Domain Security & Threat Intelligence Report
Analyst Security Overview
AI-GeneratedThe domain xa21p.icu was identified as a phishing site with a notable Virustotal detection score of 16 out of 95. This domain posed a risk by potentially impersonating legitimate services to collect sensitive information from users. Its recent activity has led security analysts to flag it as malicious, indicating immediate danger to users who might encounter it.
Registered just three days ago with NICENIC INTERNATIONAL GROUP CO., LIMITED, the domain had a single blocklist entry and was hosted on an IP address (188.114.97.3) associated with malicious activities. The short lifespan of the domain suggests a common tactic used by cybercriminals to minimize detection.
The domain is currently inactive and has been taken down by PhishDestroy. Immediate reporting and monitoring measures were enacted to prevent further exploitation. PhishDestroy continues to monitor the space for similar threats to enhance user security.
Threat Response Pipeline
Public Blocklist Status
Website Screenshot
Domain Intelligence
lilith.ns.cloudflare.com
http://whois.nicenic.com/?page=whoisform
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If you have interacted with this domain, entered personal information, or connected a cryptocurrency wallet — take immediate action. Below are resources to help you report the incident and protect yourself.
Report to Your Local Authorities
Select your country to see local cybercrime reporting contacts and complaint templates.
Related Domain Reports
Other Domains on 188.114.97.3
More Domains at NICENIC INTERNATIONAL GROUP CO., LIMITED
Stay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive
URLScan Report