█ Append-only blacklist · since 1 July 2025
Every scam domain.
Logged the moment we see it.
This is the raw feed — the same blacklist your DNS resolver, browser extension and threat-intel pipeline pulls from. Append-only. No sanitised dashboards, no warnings, no negotiations. Volunteer-run since 2019.
█ Daily threat activity
Last 30 days, by detection volume.
peak: 12 Jun · 2,066 detections
01 / Featured exposés · this week
Why the registrars bury our reports.
/news →
Investigation · NameSilo
NameSilo killed our Twitter because we told the truth about them.
Two PhishDestroy X accounts locked under three shifting justifications. X's own automation cleared us in writing — the ban held anyway. Two weeks earlier we had documented NameSilo sheltering a $20M+ Monero-theft operation now under active EU criminal investigation.
Investigation · Trustname (IANA #4318)
Trustname.com: "bulletproof" registrar with €120 in declared revenue.
An ICANN-accredited registrar that calls itself bulletproof in its own DNS TXT record. Estonian shell company, €120 revenue, one employee, Belarusian owners — and a week of fresh fake-Elon crypto-casino domains hidden behind its in-house privacy proxies.
02 / Append log · destroylist
The blacklist scrolls whether you watch or not.
format: append-only · CC-BY-4.0
▸ append-only blacklist · once added, an entry is never edited or removed
▸ 127,934 entries since 1 Jul 2025 · sync interval ≈ 14s
scan@phishdestroy:~$ tail -f list.json | jq
03 / Surface analytics
Where the infrastructure hides — and what it costs you.
auto-refresh 60s
Top TLDs · by detections
04 / Latest entries
The dossier — raw, unfiltered, append-only.
sorted by detection time
█ Submit · escalation desk
Found one we haven't logged yet?
Drop the URL — it lands in our triage queue with a median pickup time of 14 minutes. No account, no sign-in. The bot does the rest.