Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@regtons.com.
The latest stored availability evidence still shows the domain reachable; 16 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
xtoken-hub[.]com
Проверка домена xtoken-hub.com на фишинг и безопасность
“X Token Wallet”
xtoken-hub.com — Последний известный активный (HTTP 200). Сводка доказательств: VirusTotal 11/91 (alphaMountain.ai, CRDF, CyRadar, Forcepoint ThreatSeeker, Fortinet); Google Safe Browsing flagged; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 100/100. Регистратор: Gransy, s.r.o.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of the domain xtoken-hub.com indicates that it is being used for a high-risk generic phishing campaign. The domain was registered on 20 July 2026 through the registrar Gransy, s.r.o. and is delegated to the authoritative name servers ns1.dyna-ns.net and ns2.dyna-ns.net. DNS resolution points to the IPv4 address 2.26.126.4, which remains active at the time of reporting.
Google Safe Browsing classifies the site as a social-engineering threat, and the domain is currently listed on one security blocklist. Independent threat-mitigation service PhishDestroy has also blocked the domain, confirming its malicious status. VirusTotal analysis shows that two out of ninety-one scanning engines have flagged the domain, providing additional corroboration of its malicious intent. No further public intelligence such as page titles, SSL certificates, or content snapshots has been released, leaving the exact phishing lure or targeted brand unspecified.
The lack of publicly available content means that defenders cannot rely on visual indicators and must instead depend on the observable network and reputation signals. Given the active resolution, recent creation date, and multiple independent detections, security teams should add xtoken-hub.com to outbound-traffic deny lists, enforce DNS-based blocking, and monitor for any connections to its hosting IP. Incident response teams should also consider correlating internal logs for attempts to reach this domain and investigate any credential-theft incidents that may be linked to it. Continuous re-evaluation is recommended, as further indicators such as SSL details or page content may emerge.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 2 identified
Ubuntu is a free and open-source operating system on Linux for the enterprise server, desktop, cloud, and IoT.
www.ubuntu.com 100% уверенностиNginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% уверенностиАнализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of xtoken-hub.com · checked Jul 23, 2026
Доказательства и внешние отчеты
PD-20260723-B93469 Recipient: abuse@regtons.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание