Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@namecheap.com.
The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
apihub[.]to
“apiHub - Social Media Automation APIs”
apihub.to — Não verificado. Tipo de golpe: Generic Phishing. Resumo das evidências: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); URLQuery 1 alert; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 78/100. Registrador: Namecheap.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, apihub.to, poses a targeted phishing threat by impersonating a legitimate social media automation API service. The site presents itself as a provider of API solutions for social media platforms, likely designed to harvest credentials, API keys, or other sensitive authentication details from developers or businesses seeking automation tools. The use of a professional-looking interface and a name resembling legitimate API hubs increases the likelihood of successful deception, particularly among technical users who may overlook subtle indicators of compromise. Analysis indicates the domain was registered on April 04, 2026, through NAMECHEAP INC, a registrar frequently utilized for both legitimate and malicious infrastructure. The domain resolves to the IP address 188.114.97.3 and is associated with a Let's Encrypt SSL certificate, which, while common for secure connections, does not validate the legitimacy of the site. VirusTotal reports that 3 out of 95 security vendors have flagged this domain as malicious. Additionally, the domain appears on three security blocklists and is actively blocked by multiple threat intelligence platforms, including MetaMask and PhishDestroy. The Gridinsoft trust score of 0/100 further corroborates its malicious classification. Users who have visited apihub.to or interacted with its content should immediately revoke any credentials, API keys, or tokens that may have been entered on the site. System logs should be reviewed for connections to the domain or its associated IP address (188.114.97.3). If the domain was accessed in a corporate environment, affected systems should be isolated and scanned for malware or unauthorized data exfiltration. Network administrators are advised to block both the domain and its resolved IP at the perimeter to prevent further exposure. Monitoring for unusual outbound traffic or authentication attempts from compromised accounts is recommended for at least 30 days following exposure.
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | apihub.to |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of apihub.to · checked Jun 26, 2026
Análise da configuração do site
Evidências e relatórios externos
PD-20260404-8F8DA9 Recipient: abuse@namecheap.com Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo