xstock[.]fi
“xStocks - Tokenized Equities”
xstock.fi — 未验证. 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 6/91 (alphaMountain.ai, Bfore.Ai PreCrime, CRDF, Forcepoint ThreatSeeker, Gridinsoft); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy has identified xstock.fi as an active threat designed to steal cryptocurrency wallet credentials. This fake trading platform mimics legitimate exchanges to trick users into entering private keys or seed phrases. Once submitted, attackers can instantly drain funds from connected wallets, leaving victims with irreversible losses. The site specifically targets users searching for investment opportunities, often promoted through social media ads or fake testimonials. This domain was flagged after security researchers confirmed its malicious intent. As of the latest scan, only 1 out of 95 security vendors on VirusTotal recognize xstock.fi as dangerous. The site resolves to the IP address 104.21.9.95 and uses an SSL certificate issued by Google Trust Services (WE1), which may create a false sense of security. The domain was registered through a privacy-protected registrar, obscuring the true operators behind this scheme. If you visited xstock.fi or entered any sensitive information, take immediate action. First, disconnect your wallet from all dApps and revoke any suspicious token approvals using a tool like Etherscan or BscScan. Next, transfer remaining funds to a new, secure wallet with a fresh seed phrase. Monitor your transaction history for unauthorized activity and report the incident to your wallet provider. Never reuse passwords or seed phrases, and enable two-factor authentication on all crypto-related accounts. For future protection, verify domains through official sources before entering credentials.
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of xstock.fi · checked Jun 13, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。