xcas[.]com
Перевірка домену xcas.com на фішинг і безпеку
“403 Forbidden”
xcas.com — Останній відомий активний (HTTP 301). Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); PhishDestroy score 76/100. Реєстратор: Network Solutions.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
The domain xcas.com is identified as a generic phishing site designed for credential harvesting. Currently, the domain is offline, but prior analysis indicates it was actively used for malicious purposes. No specific brand impersonation has been confirmed, though its infrastructure aligns with typical phishing campaigns targeting login credentials or sensitive user data. Analysis reveals that xcas.com was flagged by 3 of 95 security vendors on VirusTotal, indicating moderate detection but sufficient evidence of malicious intent. The domain was registered through Network Solutions, LLC, and resolves to the IP address 209.17.116.163. It was created on April 28, 2026, an unusual future date that may suggest domain spoofing or registry manipulation. The domain appears on one security blocklist and holds a trust score of 0/100 from Gridinsoft. Its SSL certificate is issued by Sectigo Limited, a common provider for both legitimate and malicious domains. At present, xcas.com is offline, though its prior activity and infrastructure warrant continued monitoring. Organizations and users are advised to block the domain and its associated IP at the network level. Security teams should review logs for connections to 209.17.116.163 and investigate any prior interactions with the domain. If credentials were entered on this site, immediate password resets and multi-factor authentication enforcement are recommended. Future domain registrations from the same registrar or IP range should be scrutinized for similar patterns.
Обсяг даних12 recorded checks
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звітиIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.