Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@support.gandi.net.
The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
ampli-x[.]com
“Amplix dApp”
ampli-x.com — Ultimo attivo conosciuto (HTTP 200). Tipo di truffa: Credential Phishing. Riepilogo delle prove: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 76/100. Registrar: Gandi SAS.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
ampli-x.com is a recently activated phishing domain designed to impersonate X (formerly Twitter), tricking users into entering their login credentials on a fake login page. This type of attack typically harvests usernames and passwords, which can then be used to hijack accounts, spread malware, or launch further social engineering campaigns. Security researchers have identified this domain as part of a broader trend where threat actors create lookalike pages mimicking popular social media platforms to exploit user trust and steal sensitive information. This domain was flagged by PhishDestroy after analysis revealed multiple red flags. ampli-x.com was registered on May 14, 2026, through Gandi SAS, and currently resolves to IP address 54.116.85.132. It uses a Let's Encrypt SSL certificate, which may give it a false sense of legitimacy, and has not yet been detected by 95 VirusTotal scanners, indicating it is actively evading detection. The domain has already been blocked by MetaMask, a browser extension designed to protect users from malicious websites, and appears on one known security blocklist, further confirming its malicious nature. If you visited ampli-x.com or entered any login details, immediately change your X (Twitter) password and enable two-factor authentication to secure your account. Scan your device with reputable antivirus software to check for malware, as phishing sites often deploy stealthy payloads. Avoid clicking on any suspicious links in emails or messages, and always verify the URL before entering credentials. Report the domain to your security team or use tools like PhishDestroy to help block similar threats and protect others from falling victim to this scam.
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of ampli-x.com · checked May 16, 2026
Dati e relazioni esterne
PD-20260516-173F4A Recipient: abuse@support.gandi.net Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo