x55x[.]xyz
“x55x.xyz”
x55x.xyz — Контент недоступен. Тип мошенничества: Credential Phishing. Сводка доказательств: VirusTotal 16/91 (alphaMountain.ai, BitDefender, Cluster25, CRDF, CyRadar); URLQuery 5 det.; Spamhaus DBL_SPAM; CF Radar malicious; PhishDestroy score 95/100. Регистратор: Gname.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis as of 27 July 2026 indicates that the domain x55x.xyz remains active and is being used in a credential‑harvesting operation. The domain was registered on 2 August 2025 through Gname.com Pte. Ltd. and resolves to the IPv4 address 103.244.148.113. DNS resolution is served by four authoritative nameservers (ns1‑ns4.1111343.com). Threat intelligence feeds have flagged the domain; seven of ninety‑one VirusTotal scanners have reported malicious behavior, and it appears on one external blocklist.
The PhishDestroy service has already added the domain to its blocklist, confirming that at least one commercial sinkhole considers it hostile. No public SSL certificate details or HTTP response codes have been disclosed, and Safe Browsing or Open Threat Exchange entries were not observed in the supplied data. Because the page title, targeted brand, and underlying phishing kit have not been published, the precise lure employed by the site cannot be confirmed.
Defenders should proactively block traffic to x55x.xyz and its resolved IP address, add the domain and its nameservers to local deny lists, and monitor for any outbound connections to the hosting infrastructure. Continuous re‑scanning with multi‑engine services is advised to capture any changes in detection status. Incident response teams should treat any credential submissions to this domain as compromised and enforce password resets for affected accounts.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Доказательства и внешние отчеты
PD-20260727-78BC2D Recipient: complaint@gname.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание