Aller au rapport de sécurité
Checked 09/08/2026 Ref 04DBEA54

MALICIOUS — CRITICAL

Analyse phishing et sécurité de pc.axeldeal.com

pc[.]axeldeal[.]com

Analysis of the domain pc.axeldeal.com confirms its role as an active phishing endpoint targeting cryptocurrency wallet users.

100/100 evidence score · Critical
VirusTotal
14/91
Blocklists
2 · MetaMask, SEAL
Disponibilité
Dernier actif connu · HTTP 200
Report / Add Evidence Appeal this listing
No capture stored

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Ce domaine a été signalé comme malveillant
Moteurs de sécurité signalant une détection : 14. Listes de blocage publiques signalant une correspondance : 2. Faites preuve d’une extrême prudence – ne saisissez pas d’informations d’identification ou d’informations personnelles.
Jump to section
Résumé du rapport

pc.axeldeal.com — Dernier actif connu (HTTP 200). Résumé des preuves: VirusTotal 14/91 (ChainPatrol, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 100/100. Bureau d’enregistrement: Gname.

L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.

Evidence Analysis

Ref 04DBEA54

Analysis of the domain pc.axeldeal.com confirms its role as an active phishing endpoint targeting cryptocurrency wallet users. Registered on May 15, 2026, through a registrar based in Singapore, the domain resolves to the IP address 172.67.205.243, which is hosted on infrastructure associated with a content delivery network in Canada. The site returns an HTTP 200 status code and presents a page titled 'AXEL,' a likely reference to a cryptocurrency wallet or service, suggesting an intent to deceive users into disclosing credentials or private keys. Infrastructure review reveals the domain uses nameservers bill.ns.cloudflare.com and deborah.ns.cloudflare.com, consistent with a pattern observed in other phishing campaigns leveraging distributed hosting to evade takedowns. The SSL certificate, issued by Google Trust Services under the WE1 intermediate, provides a valid encryption layer, which may lend a false sense of legitimacy to potential victims. Despite this, the domain appears on three independent security blocklists and is actively blocked by at least three security providers, including one specialized in cryptocurrency fraud prevention. VirusTotal detections show that three out of ninety-five security vendors flag the domain as malicious, a relatively low ratio that may reflect either the recent deployment of the site or the use of evasion techniques. The domain remains operational as of July 12, 2026, with no indication of suspension or remediation. Defenders should treat this domain as a high-risk indicator and prioritize blocking both the domain and its resolving IP address at the network perimeter. Endpoint protection systems should be updated to recognize the domain as a confirmed phishing resource, particularly in environments where cryptocurrency transactions or wallet access occur.

Stored source results

Recorded verdicts and infrastructure observations for this domain.

VirusTotal
VirusTotal
14 det.
Gridinsoft
52/100
Certificat TLS
Google Trust Services / WE1
Âge
3 mo New
Statut observé
Dernier actif connu 200
PhishDestroy
DestroyList
Répertorié
Couverture des données13 recorded checks
VirusTotal 14 / 91 URLQuery pas vérifié PhishStats pas vérifié OTX no community references CF Radar no data URLScan capture not submitted URLScan verdict verdict indisponible Blocs DNS pas vérifié TLS valid certificate, 48d WHOIS 3 mo old Capture d'écran non capturé Chaîne de redirection non sondé Gridinsoft 52/100

Processus de réponse aux menaces Pipeline

Découverte
Checks
Reports
Disponibilité
7/9
Menace détectée
pc.axeldeal.com détectés et mis en file d'attente en vue d'une analyse complète
15/06/2026
VirusTotal
14/91 recorded on VirusTotal
09/08/2026
Google Safe Browsing
16/05/2026
Détection des listes noires
Trouvé dans 2 blocklists: MetaMask, SEAL
09/08/2026
robots.txt Found
A valid robots.txt was observed; no disallowed/allowed paths were extracted
09/08/2026
Technical Analysis Recorded
Le rapport contient des résultats de technologie ou d’analyse médico-légale stockés.
09/08/2026
Complaint Draft Available
Aucune soumission n'est enregistrée. Vous pouvez créer un brouillon, le réviser et le soumettre vous-même à l'autorité compétente.
DestroyList publié
15/06/2026
Monitoring Continues
Le domaine reste accessible ou restreint en accès ; des contrôles futurs pourraient mettre à jour cette observation.

Statut de la liste de blocage publique

Informations sur les domaines

Domaine
Serveur / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden La réputation Edge-IP n’est pas attribuée à ce domaine.
Registrar (base domain) Gname SG(SG)
Adresse IP 172.67.205.243 CDN
LocalisationCA Toronto, CA
RéseauAS13335 · Cloudflare, Inc.
L'adresse IP d'origine est cachée derrière un proxy CDN. Les résultats d’IP inversé pour l’adresse périphérique contiennent des locataires non liés ; trouver l’origine nécessite un DNS passif ou des données de transparence des certificats.
Registration (base domain)axeldeal.com · Créé 15/05/2026 (85d · New)
Statut HTTP200
Détails techniquesDNS, SAN SSL, horodatages
Première détection15/06/2026
Serveurs de nomsdeborah.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 28/06/2026scanned 09/07/2026
TLS SAN Domainsaxeldeal.com
Favicon Hash
ICANN OVERSIGHT Registration: axeldeal.com

Contexte de l’accréditation et du RAA

Registrar accreditation and DNS abuse obligations

For the registrable domain axeldeal.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Rien n’est envoyé automatiquement.
Signaler ce domaine Envoyez des éléments de preuve et contribuez à protéger les autres

Analyse VirusTotal

14 / Les fournisseurs de sécurité 91 ont signalé ce domaine
View on VT
Last analyzed Previous stored snapshot: 3 detections
ChainPatrol
alphaMountain.ai
BitDefender
Chong Lua Dao
CRDF
CyRadar
Fortinet
G-Data
Gridinsoft
LevelBlue
Lionic
Seclookup
SOCRadar
Sophos
Analyse de la configuration du site
Stored observations are retained with their original collection time.
robots.txt Present · HTTP 200
Valid robots.txt; no Disallow/Allow paths were extracted.
Données factuelles et rapports externesIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.

Europol
Trouvez le canal de signalement officiel pour votre pays de l'UE
National police directory
Méfiez-vous des escrocs qui prétendent vous aider à récupérer vos biens ! Les criminels peuvent recontacter leurs victimes tout en se faisant passer pour des enquêteurs, des avocats ou des agents de recouvrement. Ne payez pas de frais initiaux et ne partagez pas vos informations d'identification. En savoir plus sur la fraude liée aux aides à la reprise →

Signalez-le à vos autorités locales

Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.

Annuaire de 97 pays
Brouillon assisté par l'IA : les détails de l'incident sont traités par le fournisseur d'IA Examinez-le et soumettez-le vous-même
Intégrer ce rapportRead-only HTML widget
HTML · IFRAME

Intégrer ce rapport

Partagez ces informations sur les menaces sur votre site web ou votre blog

embed.html
<iframe
  src="https://phishdestroy.io/fr/embed/domain/pc.axeldeal.com"
  title="PhishDestroy threat report for pc.axeldeal.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Une lettre de remerciement très sincère

Générateur de brouillon satirique

Destinataire
Contexte des frais

Brouillon satirique. Les montants des frais sont des estimations ; aucune attribution exacte à ce domaine n’est affirmée.