xainoxum[.]com
“Xainoxum Official Presale including up to 200% bonus”
Detección almacenada
Alerta de encubrimiento
- Tipo de encubrimiento
content_divergence- Puntuación de encubrimiento
- 1/6
Resumen de las pruebas
PhishDestroy identifies xainoxum.com as a confirmed phishing domain actively impersonating legitimate services to harvest user credentials. This domain was flagged after security researchers detected a surge in traffic directed toward a spoofed login page designed to trick victims into surrendering sensitive information such as usernames, passwords, or financial details. The site’s infrastructure is intentionally minimalistic, relying on recently registered domains and free SSL certificates to appear legitimate at first glance. Users should treat any unsolicited login prompts from this domain as malicious and avoid interaction entirely. This domain was flagged by PhishDestroy after VirusTotal analysis revealed 4 out of 95 security engines detected the threat at the time of initial scanning, highlighting the stealthy nature of modern phishing campaigns. The domain was registered on March 30, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar known for accommodating high volumes of newly created domains, some of which are later weaponized in phishing operations. The site resolves to IP address 104.21.5.25 and utilizes a Let's Encrypt SSL certificate to mimic trusted websites. Its recent creation date and low detection rate suggest it is part of a rapidly evolving threat campaign, likely targeting users under time-sensitive pretexts such as account suspension warnings or urgent security alerts. If you have visited xainoxum.com or entered any credentials on the site, immediately change your passwords on all accounts that share the same login details, enable two-factor authentication where available, and scan your devices for malware using reputable antivirus software. Do not trust pop-ups, emails, or messages that direct you to this domain, even if they appear to come from a trusted source. Report the domain to your email provider or through cybersecurity platforms like PhishDestroy to help block its spread. Stay vigilant: phishing sites often mimic legitimate brands, and the absence of immediate detection does not equate to safety. Always verify URLs manually and avoid clicking links in unsolicited communications.
Instantánea de evidencia enviada
- Enviado
- Registros del libro
- 1
- ID del caso
PD-20260404-DD9CFB- Título de la página capturada
- Xainoxum Official Presale including up to 200% bonus
- Artefacto PDF
- Evidencia en PDF
Texto completo de la evidencia
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
Data Coverage
Inteligencia de seguridad de red
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | apijquery.com |
malicious | Sinkholed |
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 11/08/2026
10 fuentes externas supervisadas Sin coincidencias
Evidencia del resultado almacenada
Resultado y atribución del retiro
- Resultado
held- Disponibilidad
unreachable- Causa
registrar_client_hold- Actor
- NICENIC INTERNATIONAL GROUP CO., LIMITED
- Mecanismo
client_hold- Confianza
- 95%
- Primera observación
- Última observación
Indisponibilidad estimada
Tiempo hasta la indisponibilidad: 0 hSHA-256 de la evidencia d06e1aa06063
Cronología de detección
-
Disponibilidad
Primer valor almacenado: DNS inactivo
f93a11f87e4d -
Disponibilidad
DNS inactivo → Desconocido
3bbebccae563 -
Disponibilidad
Desconocido → DNS inactivo
5a03db63f7b4 -
Disponibilidad
DNS inactivo → Retenido
fec000352e03 -
Disponibilidad
Retenido → DNS inactivo
f52d526b76a1 -
Disponibilidad
DNS inactivo → Desconocido
c38cd0185a08 -
Disponibilidad
Desconocido → Retenido
c111476f7de8 -
Disponibilidad
Retenido → Desconocido
790f66434a86 -
Disponibilidad
Desconocido → DNS inactivo
6dfe9145995c -
Disponibilidad
DNS inactivo → Retenido
9c7c3598e99b
Mostrar todo (9)
-
Disponibilidad
Retenido → DNS inactivo
641ed81dc4d5 -
Disponibilidad
DNS inactivo → Desconocido
a620b844fcc4 -
Disponibilidad
Desconocido → Retenido
1395a0b7073e -
Disponibilidad
Retenido → Desconocido
2a0128f5873c -
Disponibilidad
Desconocido → DNS inactivo
d0b7046e8c2f -
Disponibilidad
DNS inactivo → Retenido
d76ae9618ec0 -
Disponibilidad
Retenido → DNS inactivo
ca9ed662b468 -
Disponibilidad
DNS inactivo → Desconocido
b5fd4e1a5d94 -
Disponibilidad
Desconocido → Retenido
d06e1aa06063
Reportes de la comunidad
Reportado por 1 miembro de la comunidad; visto por primera vez el 04/04/2026
- Reportes almacenados
- 1
- URL únicas reportadas
- 1
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, nombres TLS y marcas de tiempo
ICANN OVERSIGHT
Acreditación y contexto RAA
Acreditación y contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análisis de VirusTotal
Dominios similares
187 dominios similares almacenados
Mostrar todo (88)
Se muestran 100 de 187
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.