xpl[.]stakingsrewards[.]club
“Google”
xpl.stakingsrewards.club — Contenuto non disponibile (HTTP 502). Simulazione del marchio: Google; Tipo di truffa: Credential Phishing. Riepilogo delle prove: VirusTotal 14 detections (engine total unavailable) (ADMINUSLabs, ChainPatrol, BitDefender, CRDF, CyRadar); PhishDestroy score 92/100.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
The domain xpl.stakingsrewards.club was registered on February 21, 2026 and is currently listed as offline. Infrastructure analysis shows that the domain resolves to the IP address 142.251.140.164, which belongs to AS15169 Google LLC and is geolocated in Germany. The presence of a WE2 SSL certificate indicates that the site was served over HTTPS, but the certificate details have not been disclosed. The page title reported for the site is "Google," matching the declared brand target of Google and confirming the credential‑phishing intent.
The domain appears on a single security blocklist and is specifically blocked by the PhishDestroy filtering service. VirusTotal scans have recorded 14 detections out of 95 security vendors, reinforcing the malicious classification. Although the site is no longer reachable, the historical evidence suggests a short‑lived phishing campaign that leveraged a legitimate‑looking Google brand to harvest credentials.
Defenders should update their DNS and URL filtering policies to block the domain and the associated IP address, monitor for any future registrations that reuse the same sub‑domain pattern, and consider adding the IP to reputation‑based blocklists. Continuous monitoring of threat‑intel feeds for similar Google‑impersonation indicators is recommended, as the underlying infrastructure (Google‑owned IP space) could be reused by other actors. The limited detection footprint (one blocklist entry) does not diminish the risk; the confirmed brand impersonation and multi‑vendor detections warrant an elevated defensive posture until the domain remains offline.
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Informazioni forensi
Analisi di VirusTotal
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo