MALICIOUS — CRITICAL
apyxfi[.]com
PhishDestroy identifies apyxfi.com as an active fake investment savings scam, currently under investigation for phishing with a high-risk profile.
- VirusTotal
- 3/91
- Blocklists
- 2 · MetaMask, SEAL
- Ketersediaan
- Terselubung · dapat dijangkau · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
apyxfi.com — Terselubung · dapat dijangkau (HTTP 502). Jenis penipuan: Generic Phishing. Ringkasan bukti: VirusTotal 3/91 (Gridinsoft); 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 78/100. Registrar: Namecheap.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Evidence Analysis
PhishDestroy identifies apyxfi.com as an active fake investment savings scam, currently under investigation for phishing with a high-risk profile. This domain mimics legitimate investment platforms to deceive users seeking high-yield returns, specifically targeting individuals interested in savings with double-digit yields.
This domain was flagged through automated monitoring and exhibits multiple red flags: it resolves to IP 104.21.79.140, is registered via NAMECHEAP INC, and was created on March 12, 2026. The page title—"Apyx - Transform Your Investments with Double-Digit Yield Savings"—clearly misrepresents its intent. Despite active phishing behavior, VirusTotal currently shows 0 detections out of 95 scanners, indicating that standard threat feeds have not yet flagged this domain. The use of a Let's Encrypt SSL certificate adds a false layer of legitimacy. At the time of detection, apyxfi.com remains unresolved on major blocklists and shows no trust score impairment, likely due to its recent registration (seed: 5acb98).
Users should avoid interacting with apyxfi.com entirely. This is a classic fake investment scam where threat actors create urgency around unrealistic returns to steal funds or harvest credentials. If you visited this site, do not enter any personal or financial information. Report the domain to your browser or security provider, clear your browser cache, and monitor accounts for unusual activity. Domain registrars and hosting providers should be alerted to expedite takedown given the clear malicious intent and zero current detection coverage. Always verify investment platforms through official channels and trusted sources before engaging.
Cakupan data12 recorded checks
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknologi · 4 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Keyakinan 100%Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com Keyakinan 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Keyakinan 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Keyakinan 100%Analisis VirusTotal
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of apyxfi.com · checked May 5, 2026
Bukti & Laporan EksternalIndependent lookups and source reports
PD-20260505-A1D632 Recipient: abuse@namecheap.com Victim safety and official reportingImmediate actions and verified reporting channels
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.