MALICIOUS — CRITICAL
telxqm[.]com
The domain telxqm.com has been identified as a generic phishing threat and remains active as of the latest analysis.
- VirusTotal
- 16/91
- Blocklists
- No stored match
- Доступность
- Последний известный активный · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
telxqm.com — Последний известный активный (HTTP 200). Сводка доказательств: VirusTotal 16/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, CyRadar); Google Safe Browsing flagged; Spamhaus DBL_SPAM; PhishDestroy score 100/100. Регистратор: NiceNIC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Evidence Analysis
telxqm.com — Phishing Investigation Report
telxqm.com is flagged for generic phishing by Google Safe Browsing and detected by 14 of 95 VirusTotal vendors, indicating a serious security risk to users.
The domain telxqm.com has been identified as a generic phishing threat and remains active as of the latest analysis. This domain was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED on June 17, 2026, and resolves to the IP address 216.150.1.1. It is currently flagged as phishing by Google Safe Browsing and has been detected by 14 out of 95 security vendors on VirusTotal, placing it in the high-risk category. The domain appears on one security blocklist, and its SSL certificate, issued by Let's Encrypt (YR1), does not mitigate the malicious intent. The page title displayed is simply "Loading...", which is a common tactic used to delay user interaction while the phishing payload loads.
PhishDestroy assesses this domain as high-risk due to the combination of confirmed phishing flags, recent registration, and active status. The use of a generic page title and a free SSL certificate are typical indicators of phishing infrastructure. Users who encounter telxqm.com should avoid interacting with the site entirely, as it likely attempts to steal sensitive information such as login credentials or financial data. Organizations should block this domain at the network level and educate users about the risks of visiting unknown URLs. Immediate investigation into any potential exposure is recommended, and monitoring for related domains registered under similar patterns is advised.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Охват данных12 recorded checks
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-09 02:45:52 UTC
Анализ VirusTotal
Доказательства и внешние отчетыIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.