MALICIOUS — CRITICAL
xcas[.]com
3 of 91 security engines flagged the domain; the latest stored check returned HTTP 301.
- VirusTotal
- 3/91
- Blocklists
- No stored match
- Disponibilidad
- Último activo conocido · HTTP 301
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
xcas.com — Último activo conocido (HTTP 301). Tipo de estafa: Credential Phishing. Resumen de las pruebas: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); PhishDestroy score 76/100. Registrador: Network Solutions.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
Evidence Digest
xcas.com is classified critical with an evidence score of 76/100. 3 of 91 security engines flagged the domain. Registered 28 Apr 2026 via Network Solutions, LLC, hosted on 209.17.116.163 (Network Solutions, LLC, US). The latest stored check on 9 Aug 2026 returned HTTP 301 and includes a capture.
Stored generated summary (templated)mistral · 26/06/2026
Retained for the record. This text repeats stored detection facts and is not presented as authored analysis.
The domain xcas.com is identified as a generic phishing site designed for credential harvesting. Currently, the domain is offline, but prior analysis indicates it was actively used for malicious purposes. No specific brand impersonation has been confirmed, though its infrastructure aligns with typical phishing campaigns targeting login credentials or sensitive user data. Analysis reveals that xcas.com was flagged by 3 of 95 security vendors on VirusTotal, indicating moderate detection but sufficient evidence of malicious intent. The domain was registered through Network Solutions, LLC, and resolves to the IP address 209.17.116.163. It was created on April 28, 2026, an unusual future date that may suggest domain spoofing or registry manipulation. The domain appears on one security blocklist and holds a trust score of 0/100 from Gridinsoft. Its SSL certificate is issued by Sectigo Limited, a common provider for both legitimate and malicious domains. At present, xcas.com is offline, though its prior activity and infrastructure warrant continued monitoring. Organizations and users are advised to block the domain and its associated IP at the network level. Security teams should review logs for connections to 209.17.116.163 and investigate any prior interactions with the domain. If credentials were entered on this site, immediate password resets and multi-factor authentication enforcement are recommended. Future domain registrations from the same registrar or IP range should be scrutinized for similar patterns.
Cobertura de los datos12 recorded checks
Inteligencia de seguridad de red
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
ICANN OVERSIGHT
Acreditación y contexto RAA
Acreditación y contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análisis de VirusTotal
Datos y informes externosIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.