wxgyu.xyz
Category: Suspicious
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCRisk.com may earn a referral commission when users sign up through this link.
Description of wxgyu.xyz
wxgyu.xyz appears to be a recently registered website on the .xyz top-level domain with a short, non-brandable domain name and no established traffic ranking. Based on the scanned paths and assets, the site may be built with a modern JavaScript framework and appears to include a page related to "swap," which can be associated with cryptocurrency or token-exchange functionality. Referenced resources such as app bundles, static assets, and links to external infrastructure suggest it is intended to function as an interactive web application rather than a simple placeholder page.
The available classification data associates this domain with suspicious activity and phishing or fraud-related categories. There is no clear evidence in the provided scan data of a transparent operator identity, business profile, or established organizational presence. Given the domain's young age and limited reputation footprint, it appears to be a low-history site that may be attempting to present itself as a crypto-related service or wallet/swap interface.
Safety Assessment for wxgyu.xyz
Multiple security signals raise concerns about this domain at the time of this scan. It was flagged by 9 out of 91 security engines, with several classifying it in phishing-related terms, and multiple web-classification sources also associated it with suspicious or fraud-related activity. In addition, the malware scan reported suspicious findings on scanned content and marked numerous internal resources and links with a generic malicious-object label. While generic heuristic detections can sometimes produce false positives, the presence of several independent phishing-related detections makes the overall signal more concerning.
Blacklist and threat-database results were mixed rather than uniformly negative. Several major content-malice and phishing databases did not list the domain at the time of this scan, and the DNS-based blocklist checks shown were clean. However, one blacklist provider in the supplied data did list the domain, which means the reputation picture was not fully clean. The domain is also very new, has no meaningful traffic ranking, and is operating without a valid or detectable SSL/TLS configuration, all of which may increase risk for visitors.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The domain is approximately 172 days old, registered through Spaceship, Inc., and uses signed DNSSEC, which is a positive DNS integrity signal. Nameservers point to Spaceship infrastructure, while the resolved server IP is 185.165.169.123 and the hosting environment appears to be located with FlokiNET in Bucharest, Romania. The scanned resource paths suggest a JavaScript-heavy application, likely using a Next.js-style build structure with bundled static chunks and app routes.
A notable technical concern is that SSL/TLS appears invalid or missing at the time of this scan, with no confirmed protocol or certificate expiry information available. That can affect confidentiality and authenticity for users connecting to the site. The web server software was not identified in the provided data, which limits deeper fingerprinting, but the combination of missing or invalid HTTPS, young domain age, and suspicious scan findings may warrant caution.
Share your experience with this website. Was it safe? Did you encounter any issues?