Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@namecheap.com.
The latest stored availability evidence still shows the domain reachable; 10 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
apexmonarch[.]my
“apexmonarch.my is registered at Namecheap”
apexmonarch.my — 未验证. 品牌冒充:Namecheap; 诈骗类型:Impersonation. 证据摘要: VirusTotal 4/91 (Forcepoint ThreatSeeker, Gridinsoft, SOCRadar, VIPRE); PhishDestroy score 68/100. 注册商: Namecheap.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain apexmonarch.my was registered through Namecheap Inc. and first appeared in the WHOIS record on July 22, 2026. It currently resolves to the IPv4 address 192.64.119.107 and is served by the authoritative name servers dns1.registrar-servers.com and dns2.registrar-servers.com. The domain remains active as of the report date, August 05, 2026, and is listed on a single security blocklist operated by PhishDestroy.
VirusTotal indicates that the domain has been submitted to 91 scanning engines, none of which have returned a detection at the time of analysis; this absence of detections does not constitute a guarantee of benign behavior. No additional public threat intelligence sources such as OTX, Safe Browsing, or OpenPhish provide further context for the domain, and there are no publicly disclosed SSL certificates, HTTP response codes, or page titles associated with the site. The limited observable footprint suggests a relatively new phishing infrastructure that has not yet attracted broad vendor attention, but the presence on a dedicated phishing blocklist confirms malicious intent.
Defenders should consider adding apexmonarch.my to internal deny lists, monitoring DNS queries for the domain, and correlating any outbound connections to the IP address 192.64.119.107 with user activity. Network traffic to the domain should be blocked where possible, and any credential submissions or authentication attempts that involve this domain should be investigated as potential compromise. Continuous re‑evaluation is advised, as future scans by additional vendors or updates to blocklists may provide further insight into the threat actor’s capabilities.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
PD-20260805-C04337 Recipient: abuse@namecheap.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。