MALICIOUS — CRITICAL
Verifica phishing e sicurezza per xrevoke.com
xrevoke[.]
This domain, xrevoke.com, was registered on May 18 2026 through NICENIC INTERNATIONAL GROUP CO., LIMITED and is currently hosted behind Cloudflare (IP 188.114.96.3, location CA).
- VirusTotal
- 5/91
- Blocklists
- No stored match
- Disponibilità
- Raggiungibile · accesso limitato · HTTP 403
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
xrevoke.com — Raggiungibile · accesso limitato (HTTP 403). Tipo di truffa: Brand Impersonation. Riepilogo delle prove: VirusTotal 5/91 (alphaMountain.ai, CRDF, Fortinet, Gridinsoft, SOCRadar); Spamhaus DBL_PHISH; PhishDestroy score 76/100. Registrar: NiceNIC.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Evidence Analysis
This domain, xrevoke.com, was registered on May 18 2026 through NICENIC INTERNATIONAL GROUP CO., LIMITED and is currently hosted behind Cloudflare (IP 188.114.96.3, location CA). The authoritative name servers are christian.ns.cloudflare.com and serenity.ns.cloudflare.com, and the site serves traffic over HTTP/3 with a Let’s Encrypt E8 certificate. An HTTP request returns status 403 and the only observed page title is “Just a moment…”, indicating that the landing page is not publicly rendered. Threat intelligence flags the domain as a brand‑impersonation phishing site. One of ninety‑two VirusTotal scanners has raised an alert, AlienVault OTX references the domain in a single pulse, Gridinsoft assigns a trust score of 0 / 100, and it appears on one external blocklist. PhishDestroy has already blocked the domain. The risk level is classified as high and the indicator remains active. At present, the observable infrastructure suggests a typical phishing staging environment that leverages Cloudflare’s CDN and a generic TLS certificate to obscure origin. No additional payload, credential‑harvesting page, or malicious script has been disclosed. Defenders should add xrevoke.com to network‑level deny lists, monitor DNS queries for the associated IP address, and consider sinkholing the domain to disrupt any credential‑stealing flow. Continuous re‑evaluation is advised as further content may be revealed if the site changes status.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Copertura dei dati12 recorded checks
Informazioni sulla sicurezza di rete Registrar context
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-09 02:45:52 UTC
Tecnologie · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Confidenza al 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confidenza al 100%Analisi di VirusTotal
Dati e relazioni esterneIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.