menodex[.]com
فحص التصيد والأمان للنطاق menodex.com
“menoDEX: The Easiest Way to Buy Crypto with Confidence”
menodex.com — المحتوى غير متوفر (HTTP 502). انتحال العلامة التجارية: Aave; نوع الاحتيال: Social Media Phishing. ملخص الأدلة: VT 3 det. (total unavailable) (Gridinsoft, SOCRadar, URLQuery); URLQuery 1 alert; URLScan no malicious verdict; GSB no flag; BL 2 (MetaMask, SEAL); PD 66/100. مسجّل النطاق: NiceNIC.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy first observed menodex.com on Feb 11, 2026. Positive findings were recorded by MetaMask, SEAL, and URLQuery. Evidence score: 66/100.
The external blocklist snapshot contained 2 matches (MetaMask, SEAL) on Aug 7, 2026 at 14:20 UTC. URLQuery recorded 1 threat-system alert on Feb 11, 2026 at 20:22 UTC. Google Safe Browsing returned no flag on Mar 3, 2026 at 04:14 UTC. URLScan completed without a malicious verdict (score 0) on Feb 11, 2026 at 18:55 UTC. VirusTotal was checked, but a reliable engine total is unavailable on Feb 23, 2026 at 08:44 UTC.
HTTP 502 was recorded on Aug 7, 2026 at 01:35 UTC; content was unavailable. Latest classified outcome: registration hold observed; cause registrar client hold; mechanism client hold; observed actor NICENIC INTERNATIONAL GROUP CO., LIMITED on Aug 7, 2026 at 02:05 UTC. Registration records list NiceNIC International Group Co., Limited as the registrar. At collection time, the domain resolved to 172.67.189.26. Collected metadata identifies Aave as the apparent target. Captured page title: “menoDEX: The Easiest Way to Buy Crypto with Confidence”. PhishDestroy classified the observed content as Social Media Phishing. DOM analysis completed on Jul 29, 2026 at 04:12 UTC; stored DOM score 0/100. IoC extraction completed on Aug 2, 2026 at 04:12 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators.
Stored full analysis25/07/2026
The domain menodex.com was registered on 21 February 2026 through NiceNIC International Group Co., Limited and is presently taken offline. DNS resolution points to the Cloudflare edge address 172.67.189.26, belonging to AS13335, confirming hosting on Cloudflare’s network in the United States. The authoritative nameservers listed are kipp.ns.cloudflare.com and wren.ns.cloudflare.com, both standard Cloudflare delegations, indicating the operator relied on Cloudflare’s CDN and protection services. Security telemetry shows the site appeared on three independent blocklists, including PhishDestroy, MetaMask, and SEAL, each classifying it as a social‑media phishing vector.
VirusTotal analysis recorded three positive detections out of ninety‑five submitted scanners, reinforcing the suspicion of malicious intent. No TLS certificate was observed for the domain, meaning any HTTP requests would have been served over cleartext, a common characteristic of hastily deployed phishing infrastructure. The page title retrieved before takedown reads “menoDEX: The Easiest Way to Buy Crypto with Confidence,” suggesting the campaign targeted users interested in cryptocurrency services, likely leveraging social‑media channels to lure victims. Aside from the title, no additional content has been captured, and the current offline status prevents further technical examination of HTTP responses, redirects, or payloads.
Uncertainty remains regarding the specific phishing kit, credential‑harvesting endpoints, and any exfiltration mechanisms, as those details were not disclosed in the available intelligence. Defenders should continue to monitor the domain’s DNS records for any re‑activation, enforce blocklist updates, and consider adding the domain to corporate web‑filter policies. Network sensors should flag any outbound connections to the IP 172.67.189.
استخبارات أمن الشبكات Registrar Integrity Alert
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Nextron YARA rules | menodex.com/app-resources-d5/main.f04664c1385e68c1186a.v2.js |
malware | Unique code from Jetriz, Swid & Jeniva of the Tetris framework |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
حصلت ICANN على أموالها. أما المساءلة فلم تصل.
بالنسبة إلى نطاق gTLD هذا، يعمل المسجّل المذكور أعلاه بموجب عقد مع ICANN. وتحصّل ICANN رسوماً سنوية ومتغيرة ورسومًا قائمة على المعاملات مرتبطة بعمليات التسجيل والتجديد والنقل.
الاعتماد: جرت الاستفادة منه مالياً. المساءلة: يُرجى التحقق مرة أخرى لاحقاً.
ثم يبدأ السحر: تكتب ICANN البند RAA §3.18، ويتولى المسجّل التحقيق في إساءة الاستخدام داخل قاعدة عملائه، ويقدّم الضحايا الأدلة مجاناً، بينما تنتظر كل طبقة أن يتحرك طرف آخر. إذا كان ذلك يجعل الضحايا يشعرون بمزيد من الأمان، فممتاز—لقد أدّت الفاتورة مهمتها.
Latest Classified Outcome 2026-08-07 04:05:54 UTC
تحليل VirusTotal
الأدلة المؤرشفة
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
حول هذا التقرير: menodex.com
يقدم هذا التقرير أحدث الأدلة المخزنة المتاحة لـ PhishDestroy. يتم عرض الطوابع الزمنية للمصدر حيثما كان ذلك متاحًا؛ يمكن أن تتغير أحكام التوفر والبائعين بعد التجميع.
عرض الموقع الذي تم التقاطه عنوان الصفحة “menoDEX: The Easiest Way to Buy Crypto with Confidence” وربما ينتحل شخصية Aave.
اعتبارًا من 07/08/2026، كان لدى menodex.com اكتشافات من محركات الأمان 3.
إذا كنت تعتقد أن هذه القائمة غير دقيقة، تقديم استئناف. للتعرف على منهجيتنا، قم بزيارة صفحة الأسئلة الشائعة.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب