spcx-communities[.]xyz
“$SPCX DISTRIBUTION”
spcx-communities.xyz — Неперевірений. Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 17/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 100/100. Реєстратор: NiceNIC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy identifies spcx-communities.xyz as a generic phishing domain currently in an offline status, though it was active and promoting a fraudulent $SPCX distribution scheme. This domain was created on May 20, 2026, and is registered through NICENIC INTERNATIONAL GROUP CO., LIMITED. It resolves to IP address 172.67.223.152 and is secured with a Let's Encrypt SSL certificate (E7). The page title explicitly reads "$SPCX DISTRIBUTION," indicating an attempt to trick users into connecting their crypto wallets or providing sensitive information under the guise of a token airdrop.
The domain's malicious nature is corroborated by multiple security sources. VirusTotal flags it as malicious by 4 out of 95 vendors, and it appears on 3 security blocklists. AlienVault OTX includes it in one threat intelligence pulse, signaling community awareness. While currently offline, the site's infrastructure remains active, and the domain registration details suggest a possible return or similar future threats. The use of a generic TLD (.xyz) and a short-lived registration period are common red flags in phishing campaigns.
Given these indicators, users should avoid any interaction with spcx-communities.xyz or similar domains. PhishDestroy recommends verifying all crypto distribution announcements through official project channels and never connecting a wallet to unverified sites. If you have already engaged with this domain, immediately revoke any wallet permissions and monitor for unauthorized transactions. Stay vigilant against such phishing attempts by using PhishDestroy's domain checker before interacting with any unknown websites.
Розвіддані з мережевої безпеки Registrar context
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-17 02:48:24 UTC
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога