Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@trustname.com.
The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
primeaxiscapital[.]cyou
“Prime Axis Capital”
primeaxiscapital.cyou — Non vérifié. Type d'arnaque : Crypto Drainer. Résumé des preuves: VirusTotal 8/91 (alphaMountain.ai, Chong Lua Dao, CRDF, CyRadar, Forcepoint ThreatSeeker); PhishDestroy score 74/100. Bureau d’enregistrement: FewMoreTaps OÜ.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
PhishDestroy identifies primeaxiscapital.cyou as a generic phishing threat, specifically a crypto drainer designed to steal cryptocurrency wallet credentials and funds. The domain impersonates Prime Axis Capital, a legitimate financial entity, to trick users into connecting their wallets or entering sensitive information. This threat poses a high risk of financial loss, as crypto drainers can automatically transfer assets once a user interacts with the site.
The evidence against this domain is substantial. VirusTotal reports that 3 out of 95 security vendors flag the domain as malicious, indicating it is actively recognized as a threat. The domain was created on April 21, 2026, which is relatively recent, a common trait among phishing domains. It is registered through FewMoreTaps OU, a registrar known for hosting questionable sites. The domain resolves to IP 198.251.89.144, and its SSL certificate is issued by Let's Encrypt / R12, which provides encryption but does not validate legitimacy. Additionally, the domain appears on 1 security blocklist, confirming its malicious reputation. The page title, "Prime Axis Capital," is a direct impersonation of the legitimate firm.
If a user has visited primeaxiscapital.cyou, they should immediately disconnect any connected wallets and revoke permissions for the site using a blockchain explorer or wallet security tool. It is also advisable to run a full antivirus scan and monitor accounts for unauthorized transactions. Users should never interact with unsolicited links or provide wallet credentials on unfamiliar sites. PhishDestroy recommends verifying all financial platforms through official channels before engaging.
Renseignements sur la sécurité réseau Registrar context
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
ZONE SHORTDOT · PREUVES PUBLIQUES
.cyou
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies · 7 identified
Smartsupp is a live chat tool that offers visitor recording feature.
www.smartsupp.com Confiance à 100 %Select2 is a jQuery based replacement for select boxes. It supports searching, remote data sets, and infinite scrolling of results.
select2.org Confiance à 100 %jQuery UI is a collection of GUI widgets, animated visual effects, and themes implemented with jQuery, Cascading Style Sheets, and HTML.
jqueryui.com Confiance à 100 %jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com Confiance à 100 %HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confiance à 100 %Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of primeaxiscapital.cyou · checked Apr 21, 2026
Analyse de la configuration du site
Données factuelles et rapports externes
PD-20260421-8F5D5E Recipient: abuse@trustname.com Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif