xaman-voting[.]org
Phishing and security check for xaman-voting.org
Analysis of xaman-voting.org indicates that the domain is actively leveraged for phishing activity. VirusTotal records show that four out of ninety-one security vendors have flagged the domain, providing an early indication of malicious intent. The domain resolves to the IP address 104.21.22.65, which is associated with known malicious hosting infrastructure used in prior phishing campaigns.
Independent blocklist providers have taken action: PhishDestroy, MetaMask, and SEAL all list the domain as blocked, and it appears on three additional security blocklists, reinforcing the consensus that the domain is being used to deceive users. Concrete evidence is limited to these infrastructure indicators; no publicly available details about the site’s page title, SSL certificate, HTTP response codes, or content have been disclosed, leaving the exact phishing vector and targeted brand unspecified. Defenders should treat the domain as high‑risk: incorporate the IP address and domain into DNS sinkhole or firewall deny lists, monitor outbound traffic for connections to 104.21.22.65, and ensure that email security gateways are configured to block URLs referencing xaman-voting.org.
Continuous threat‑intel feeds should be consulted for any updates on detection vendor classifications or additional blocklist entries. Until further content analysis is available, the precautionary measures outlined above constitute the recommended response to mitigate exposure to this active phishing threat.
Network Security Intelligence
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | xaman-voting.org |
malicious | Sinkholed |
Threat Response Pipeline
Public Blocklist Status
Stored Capture
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
ICANN Got Paid. Accountability Did Not Arrive.
For this gTLD, the registrar above operates under an ICANN contract. ICANN collects annual, variable and transaction-based fees tied to registrations, renewals and transfers.
Accreditation: monetized. Accountability: please check back later.
Then the magic starts: ICANN writes RAA §3.18, the registrar investigates abuse inside its own customer base, and victims deliver the evidence for free while every layer waits for someone else to act. If that makes victims feel safer, excellent—the invoice worked.
Technologies · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% confidenceCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% confidenceHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% confidenceVirusTotal Analysis
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of xaman-voting.org · checked Aug 7, 2026
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
About This Report: xaman-voting.org
Stored evidence snapshot. Source timestamps appear where available.
VirusTotal detections for xaman-voting.org: 4 (Aug 7, 2026).
submit an appeal or review the FAQ page.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive