# xcrecacuold.digital — MALICIOUS > Check the safety of xcrecacuold.digital, flagged for phishing. Learn why this domain is risky and what to do if you encountered it. ## Summary PhishDestroy identifies xcrecacuold.digital as a high-risk phishing domain. This site was created recently and appeared on multiple security blocklists, raising concerns about its intent to deceive users. This phishing scheme likely tricks visitors by mimicking legitimate services under the page title 'Helvionex' to steal sensitive information like passwords or financial details. The domain was flagged by several threat intelligence sources before being taken offline. If you visited this site, immediately change any passwords you entered and monitor your accounts for suspicious activity. Avoid revisiting the domain and use trusted security tools to scan your devices for potential threats. ## Threat Details - Verdict: MALICIOUS - Site status: dead (HTTP 403) - Page title: Helvionex ## Domain Intelligence - Registered: 2026-02-21 07:01:08 - Expires: 2027-01-06 00:00:00 - Registrar: PDR Ltd. d/b/a PublicDomainRegistry.com - Country: IN - IP: 188.114.96.3 - IP Country: US - IP City: San Francisco - IP Org: AS13335 Cloudflare, Inc. - Nameservers: bella.ns.cloudflare.com pranab.ns.cloudflare.com - SSL Issuer: none ## Detection Status - VirusTotal: 20 vendors flagged Vendors: ["ADMINUSLabs", "alphaMountain.ai", "BitDefender", "Chong Lua Dao", "Cluster25", "CRDF", "CyRadar", "DNS8", "ESET", "Forcepoint ThreatSeeker", "Fortinet", "G-Data", "Google Safebrowsing", "Gridinsoft", "Lionic", "Seclookup", "SOCRadar", "Sophos", "VIPRE", "Webroot"] - Google Safe Browsing: clean - Blocklists: 2 hits Lists: ["PhishDestroy", "MetaMask"] ## Evidence - Screenshot: https://urlscan.io/screenshots/019bff2c-0ae2-744f-80ab-ce12c019a659.png - Cloudflare Radar: https://radar.cloudflare.com/scan/baed8c62-cb85-42d0-8c47-d312f84c3b58 - PhishDestroy: https://phishdestroy.io/domain/xcrecacuold.digital/ - LLM endpoint: https://phishdestroy.io/domain/xcrecacuold.digital/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/xcrecacuold.digital/ Last updated: 2026-03-19