Lookalike Domain Analysis

Detailed risk assessment for xboxapi.com

Back to Report
Domain Information
Lookalike Domain
xboxapi.com
Legitimate Domain (Target)
xbox.com
Digital goods theft
Registrar
NAMECHEAP INC Dangerous Registrar
Website Status
Offline
Detection Date
February 09, 2026 17:43
Domain Creation Date
February 08, 2012
RDAP Takedown Status
Active
Discovery Method
Fuzzer
DNS Records
Nameservers
dns1.registrar-servers.com., dns2.registrar-servers.com.
MX Records (Mail Servers)
alt1.aspmx.l.google.com., alt2.aspmx.l.google.com., aspmx.l.google.com. Dangerous Provider
SPF Record (Email Authentication)
v=spf1 include:mailgun.org include:_spf.google.com -all
Risk Score Breakdown

This risk score shows how dangerous this lookalike domain is. Higher scores indicate more active threats. Each indicator below adds points to the score (max 100).

Talos Blacklist

Not on Talos blacklist

+0
Dangerous Registrar

Registered with flagged registrar: NameCheap

+25
Dangerous Email Provider

MX record matches flagged provider: google

+10
MX Records Configured

Email servers configured: alt1.aspmx.l.google.com., alt2.aspmx.l.google.com....

+15
SPF Records

SPF authentication configured with sending directives

+15
Website is Live

Website status: Offline

+0
Website is Parked

Website status: Offline

+0
Website is Phishing

Website status: Offline

+0
Domain Age

Domain registered 5154 days ago (older than 90 days)

+0
Total Score: 65 / 100
4 of 9 factors active
Threat Level
65 / 100
High Risk

High priority threat. Review the details below and consider takedown action.

Request Takedown
Key Threat Signals
  • Talos Blacklisted No
  • Website Active No
  • Email Capability Enabled
  • Email Authentication Configured
  • Taken Down No
Related Threats

Other domains attacking xbox.com

Remove This Threat

Our specialist team removes malicious domains in 24-48 hours.

Start Takedown Process
Daniel Hovasse
Need Help?
Contact our expert
Daniel Hovasse
Detect Lookalike Domains

Find domains that impersonate your brand. Scan for lookalike domains that could be used for phishing or fraud.

Scan for Lookalikes