flarenetworks-vote.xyz
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCRisk.com may earn a referral commission when users sign up through this link.
Description of flarenetworks-vote.xyz
The domain flarenetworks-vote.xyz appears to present itself as a Flare-related voting portal tied to FLR token rewards and governance. Based on the screenshot, the page invites visitors to "cast your vote" and prominently features wallet-connection prompts, countdown timers, and references to FLR, WFLR, FXRP, and supported DeFi protocols. This suggests the site is targeting users involved with cryptocurrency staking, delegation, or governance participation.
The branding and wording indicate that the site may be attempting to associate itself with the Flare ecosystem, but the domain is not an obvious primary brand domain and uses a newly registered .xyz address. The page structure resembles a campaign or governance landing page rather than a broad informational website, with the main user action centered on connecting a wallet and submitting a vote.
Safety Assessment for flarenetworks-vote.xyz
Multiple scan signals indicate elevated risk at the time of this scan. The domain was flagged by 9 out of 91 security engines, with several classifying it as phishing or related fraud, and multiple web-classification sources also categorized it as phishing. In addition, a malware scan marked one JavaScript file as suspicious, although no specific malware family name was provided. The screenshot shows a cryptocurrency-themed voting page that encourages wallet connection, which is a common pattern in wallet-draining and credential-harvesting campaigns.
Other context also increases caution. The domain is only 3 days old, has no established traffic ranking, and uses branding that appears closely tied to the Flare name while operating from a separate .xyz domain. Although major threat-database checks shown here were otherwise clean at the time of this scan, newly created phishing pages can appear before broader blocklists fully catch up.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site is served over HTTPS with a valid TLS certificate issued by a mainstream certificate authority, and it is proxied through Cloudflare infrastructure on IP address 104.21.20.71. Nameservers also point to Cloudflare, and the hosting location is reported as Toronto, Canada. A valid certificate helps encrypt traffic in transit, but it does not by itself verify the trustworthiness of the site's purpose or operator.
From a security posture standpoint, the domain is very new, DNSSEC appears to be unsigned, and the scan identified a suspicious JavaScript asset at /assets/drift-formpulse.js. The combination of fresh registration, phishing-related detections, and wallet-interaction content may warrant heightened caution at the time of this scan.
Share your experience with this website. Was it safe? Did you encounter any issues?