# xbull.top — MALICIOUS > The domain xbull.top is linked to high-risk phishing attacks. Avoid interaction and report suspicious messages to stay protected. ## Summary PhishDestroy identifies xbull.top as a high-risk phishing domain actively used to deceive users. Classified under generic phishing threats, this domain poses significant danger by potentially capturing sensitive information such as credentials or financial details from unsuspecting victims. Supporting intelligence includes its recent creation date on February 21, 2026, indicating a newly established malicious infrastructure. The domain's low PageSpeed score of 32/100 suggests a hastily constructed website, consistent with typical phishing setups. It is listed on at least one major security blocklist and has been flagged by 13 out of 95 VirusTotal security vendors. Additionally, its presence in an AlienVault OTX threat pulse confirms active monitoring and reporting by the cybersecurity community. Users should avoid clicking links or submitting any personal data on xbull.top. PhishDestroy advises immediate blocking of this domain at network and endpoint levels to prevent compromise. Despite active detection efforts, the domain remains operational, underscoring the need for continued vigilance and updated security measures to mitigate this ongoing phishing threat. ## Threat Details - Verdict: MALICIOUS - Site status: alive (HTTP 200) - Page title: XBULL ## Domain Intelligence - Registered: 2026-02-21 07:01:08 - Registrar: Gname.com Pte. Ltd. - Nameservers: ["ariadne.ns.cloudflare.com.", "everton.ns.cloudflare.com."] ## Detection Status - VirusTotal: 13 vendors flagged Vendors: ["alphaMountain.ai", "BitDefender", "CRDF", "CyRadar", "ESET", "Fortinet", "G-Data", "Gridinsoft", "Seclookup", "SOCRadar", "Sophos", "Trustwave", "Webroot"] - Google Safe Browsing: clean - Blocklists: 1 hits Lists: ["PhishDestroy"] ## Live Page Content ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/57396ced-f80d-431d-b337-7967f6e92da1 - PhishDestroy: https://phishdestroy.io/domain/xbull.top/ ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/xbull.top/ Last updated: 2026-03-14