# xamans-aiiocations.xyz — MALICIOUS > PhishDestroy identifies xamans-aiiocations.xyz as an active credential-harvesting domain flagged by 5 of 95 VirusTotal scanners. Avoid sharing login details. ## Summary PhishDestroy identifies the domain xamans-aiiocations.xyz as an active credential-harvesting scam posing as a legitimate AI service. This domain exhibits multiple red flags: flagged by 5 of 95 VirusTotal vendors, registered through NICENIC INTERNATIONAL GROUP CO., LIMITED, resolving to IP 188.114.96.3, equipped with a Let’s Encrypt SSL certificate, and created on March 22, 2024. The combination of its recent registration date, low trust scores, and presence on partial blocklists signals elevated risk for users. Given the domain’s current active status and the specific threat of credential harvesting, PhishDestroy recommends users avoid interacting with xamans-aiiocations.xyz and report the domain to their security teams. Organizations should update firewall rules to block IP 188.114.96.3 and consider domain-wide DNS blacklisting to prevent accidental exposure. Always verify URLs and use multi-factor authentication to mitigate risks associated with similar threats. ## Threat Details - Verdict: MALICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2026-03-22 22:43:25 - Registrar: NICENIC INTERNATIONAL GROUP CO., LIMITED - IP: 188.114.96.3 ## Detection Status - VirusTotal: 5 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/6674facc-dcf2-4105-9936-07cdc2948520 - PhishDestroy: https://phishdestroy.io/domain/xamans-aiiocations.xyz/ - LLM endpoint: https://phishdestroy.io/domain/xamans-aiiocations.xyz/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/xamans-aiiocations.xyz/ Last updated: 2026-03-30