xray-opinion[.]trade
Domain Security & Threat Intelligence Report
14/95 VT
Taken Down
Nov 17, 2025
Killed Feb 24, 2026
3 Blocklists
81
Threat
PhishDestroy AI
HIGH
The domain xray-opinion.trade has been identified as a phishing site that potentially impersonates a legitimate service. It has a VirusTotal (VT) score of 14 out of 95, which indicates a significant level of detection by security solutions. This domain's intent to deceive users makes it particularly hazardous. The domain has also received attention from blocklists, accumulating 3 entries, highlighting ongoing concerns about its malicious activities.
Registered with NICENIC INTERNATIONAL GROUP CO., LIMITED, xray-opinion.trade is relatively new, having been active for only 106 days. The domain is hosted on an IP address (185.245.34.139) that may be associated with other suspicious activities. Given its recent establishment and the number of detections, it raises red flags that suggest it was set up specifically for phishing purposes.
Though the site status is currently listed as alive, it has been taken down following PhishDestroy's intervention. Our team reported the domain, and appropriate measures have been taken to blocklist and monitor it to prevent further phishing attempts. Vigilance remains essential as similar threats may emerge.
Registered with NICENIC INTERNATIONAL GROUP CO., LIMITED, xray-opinion.trade is relatively new, having been active for only 106 days. The domain is hosted on an IP address (185.245.34.139) that may be associated with other suspicious activities. Given its recent establishment and the number of detections, it raises red flags that suggest it was set up specifically for phishing purposes.
Though the site status is currently listed as alive, it has been taken down following PhishDestroy's intervention. Our team reported the domain, and appropriate measures have been taken to blocklist and monitor it to prevent further phishing attempts. Vigilance remains essential as similar threats may emerge.
VirusTotal
14 Detections
URLScan.io
Domain Age
107 days New
Site Status
Taken Down HTTP 403
DestroyList
Listed
User Reports
1 report
Threat Response Pipeline
Discovery
Submission
Legal
Takedown
12/13
Pre-emptive Discovery & Ingestion
Global Ecosystem Submission
Legal Notifications & Reporting
Public Transparency & Takedown
Public Blocklist Status
Evidence Capture
Domain Intelligence
Domainxray-opinion.trade
RegistrarNICENIC INTERNATIONAL GROUP CO., LIMITED (Hong Kong)
IP Address185.245.34.139
CreatedNov 10, 2025 (107 days — New)
ExpiresNov 10, 2026
Nameserversa.dnspod.com
b.dnspod.com
c.dnspod.com
b.dnspod.com
c.dnspod.com
Abuse Contactsdomainadmin@dnspod.com
abuse@nicenic.net
abuse@nicenic.net
First DetectedNov 17, 2025
Registrar Response0h
HTTP Status403
Report This Domain
Submit evidence & help protect others
VirusTotal Analysis
14 / 95 security vendors flagged this domain
View on VT
ADMINUSLabs
alphaMountain.ai
BitDefender
CRDF
CyRadar
ESET
Fortinet
G-Data
Gridinsoft
Lionic
SOCRadar
Sophos
ThreatHive
Trustwave
Evidence & External Reports
Were You Affected by This Site?
You are not alone and there is nothing to be ashamed of. Scammers are sophisticated criminals who exploit trust. Reporting your experience is the most powerful weapon against fraud — your report can prevent others from becoming victims and help law enforcement take action. Silence is the scammer's greatest advantage. Break it.
If you have interacted with this domain, entered personal information, or connected a cryptocurrency wallet — take immediate action. Below are resources to help you report the incident and protect yourself.
Chainabuse
Report crypto wallet address, transaction, or phishing URL
FBI IC3
Report internet crime (US)
Europol
Report cybercrime (EU)
Action Fraud
Report fraud & cyber crime (UK)
SEAL-ISAC
Security Alliance — crypto threat intelligence
Domain Appeal
Contest this listing if false positive
Beware of recovery scammers! After being scammed, criminals may contact you again pretending to be "recovery agents," lawyers, or investigators who claim they can retrieve your lost funds — for a fee. This is a second scam. No legitimate service will ask for upfront payment to recover stolen crypto. Learn more about recovery fraud →
Report to Your Local Authorities
Select your country to see local cybercrime reporting contacts and complaint templates.
Select your country...
Related Domain Reports
Other Domains on 185.245.34.139
More Domains at NICENIC INTERNATIONAL GROUP CO., LIMITED
Stay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive
URLScan Report