Перейти к отчёту о безопасности
Checked 09.08.2026 Ref CF3257C2

MALICIOUS — CRITICAL

xcas[.]com

3 of 91 security engines flagged the domain; the latest stored check returned HTTP 301.

76/100 evidence score · Critical
VirusTotal
3/91
Blocklists
No stored match
Доступность
Последний известный активный · HTTP 301
Report / Add Evidence Appeal this listing
2026-06-15 04:28 UTCПоследний известный активный · HTTP 301

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Этот домен был отмечен как вредоносный
Механизмы безопасности сообщают об обнаружении: 3. Будьте предельно осторожны — не вводите учетные данные или личную информацию.
Jump to section
Краткий обзор отчёта

xcas.com — Последний известный активный (HTTP 301). Тип мошенничества: Credential Phishing. Сводка доказательств: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); PhishDestroy score 76/100. Регистратор: Network Solutions.

Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.

Evidence Digest

Ref CF3257C2

xcas.com has a stored critical classification with an evidence score of 76/100. 3 of 91 security engines flagged the domain. Registered 28 Apr 2026 via Network Solutions, LLC, hosted on 209.17.116.163 (Network Solutions, LLC, US). The latest stored check on 9 Aug 2026 returned HTTP 301 and includes a capture.

Stored generated summary (templated)mistral · 26.06.2026

Retained for the record. This text repeats stored detection facts and is not presented as authored analysis.

The domain xcas.com is identified as a generic phishing site designed for credential harvesting. Currently, the domain is offline, but prior analysis indicates it was actively used for malicious purposes. No specific brand impersonation has been confirmed, though its infrastructure aligns with typical phishing campaigns targeting login credentials or sensitive user data. Analysis reveals that xcas.com was flagged by 3 of 95 security vendors on VirusTotal, indicating moderate detection but sufficient evidence of malicious intent. The domain was registered through Network Solutions, LLC, and resolves to the IP address 209.17.116.163. It was created on April 28, 2026, an unusual future date that may suggest domain spoofing or registry manipulation. The domain appears on one security blocklist and holds a trust score of 0/100 from Gridinsoft. Its SSL certificate is issued by Sectigo Limited, a common provider for both legitimate and malicious domains. At present, xcas.com is offline, though its prior activity and infrastructure warrant continued monitoring. Organizations and users are advised to block the domain and its associated IP at the network level. Security teams should review logs for connections to 209.17.116.163 and investigate any prior interactions with the domain. If credentials were entered on this site, immediate password resets and multi-factor authentication enforcement are recommended. Future domain registrations from the same registrar or IP range should be scrutinized for similar patterns.

VirusTotal
VirusTotal
3 det.
OTX references
Сертификат TLS
Просрочен или не проверен -1383d
Возраст
3 mo
Зафиксированный статус
Последний известный активный 301
PhishDestroy
DestroyList
В списке
Охват данных12 recorded checks
VirusTotal 3 / 91 URLQuery checked — no detections recorded PhishStats не проверено OTX 1 community reference CF Radar scan completed URLScan capture not submitted URLScan verdict вердикт недоступен DNS-блокировки не проверено TLS Просрочен или не проверен WHOIS 3 mo old Снимок экрана 2 captures · 2 sources Цепочка перенаправлений не исследовано
Данные сетевой безопасности
SSL Certificate Invalid
SSL certificate is invalid or expired. Issuer: Sectigo Limited

Процесс реагирования на угрозы

Открытие
Checks
Reports
Доступность
9/11

Статус в публичных блок-листах

Сохранённый снимок

Заголовок страницы
403 Forbidden
Сертификат TLS
Просрочен или не проверен · Выдан Sectigo Limited

Аналитика доменов

Домен
Сервер / ASN openresty/1.25.3.1 · AS19871 Network Solutions, LLC
Репутация IP abuse score 0/100 0 reports checked 13.07.2026
Регистратор Network Solutions
IP-адрес 209.17.116.163 US
ГеолокацияUS Atlanta, US
СетьAS19871 · Web.com Group, Inc
Обратный поиск IPviewdns.info → rapiddns.io →
РегистрацияСоздано 28.04.2026 (102d)
Статус HTTP301 Moved Permanently
Технические сведенияDNS, SAN в протоколе SSL, временные метки
Впервые обнаружено15.06.2026
Серверы имёнns56.worldnic.com
TLS Fingerprint
TLS Observationvalid from 12.08.2021scanned 28.04.2026
TLS SAN Domainshostingplatform.com
ICANN OVERSIGHT

Аккредитация и контекст RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Ничего не отправляется автоматически.
Пожаловаться на этот домен Предоставьте доказательства и помогите защитить других

Анализ VirusTotal

3 / Поставщики средств безопасности 91 отметили этот домен
View on VT
Last analyzed First positive detection Previous stored snapshot: 3 detections
CRDF
Gridinsoft
SOCRadar
Доказательства и внешние отчетыIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.

Европол
Найдите официальный канал отчетности для вашей страны ЕС
National police directory
Остерегайтесь мошенников, предлагающих услуги по восстановлению данных! Преступники могут снова связаться с жертвами, притворяясь следователями, адвокатами или агентами по восстановлению. Не платите авансовые платежи и не делитесь учетными данными. Узнайте больше о мошенничестве при получении компенсаций →

Сообщите об этом в местные органы власти

Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.

Каталог 97 стран
Черновик по шаблону • помощь AI с формулировками включается только с отдельного согласия. Просмотрите и отправьте его самостоятельно
Вставить этот отчетRead-only HTML widget
HTML · IFRAME

Вставить этот отчет

Разместите эту информацию об угрозах на своём сайте или в блоге

embed.html
<iframe
  src="https://phishdestroy.io/ru/embed/domain/xcas.com"
  title="PhishDestroy threat report for xcas.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Очень искреннее благодарственное письмо

Генератор сатирических черновиков

Получатель
Контекст сборов

Это сатирический черновик. Суммы сборов являются оценочными; мы не утверждаем, что они точно относятся к этому домену.