voting-theo[.]xyz
voting-theo.xyz — Непроверенный. Сводка доказательств: VirusTotal 4/92 (alphaMountain.ai, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 83/100. Регистратор: NiceNIC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
PhishDestroy identifies voting-theo.xyz as a generic phishing site that does not appear to be impersonating a specific well-known brand, nor does it seem to be utilizing a particular crypto drainer kit. The threat type associated with this domain is generic phishing, which can involve a wide range of deceptive tactics to trick users into divulging sensitive information.
The domain voting-theo.xyz has a VirusTotal score of 4/95, indicating that four out of ninety-five security vendors have flagged it as malicious, and it was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED. It resolves to the IP address 172.67.216.71, and its creation date is May 13, 2026. Furthermore, this domain appears on three security blocklists and has been issued an SSL certificate by Let's Encrypt, specifically E7.
Currently, voting-theo.xyz is offline, suggesting that it has been taken down, likely in response to the elevated risk level it poses. Despite this, users should remain cautious and continue to verify the legitimacy of websites on PhishDestroy to ensure their safety. The fact that it was flagged by multiple security vendors and appears on several blocklists underscores the importance of vigilance when encountering unfamiliar or untrusted websites, and the unique seed 899443 has been used to analyze this domain.
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-16 02:49:46 UTC
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание