MALICIOUS — CRITICAL
mexcopsi[.]com
The domain mexcopsi.com presents a high risk to users due to brand impersonation, specifically masquerading as the legitimate MEXC cryptocurrency exchange.
- VirusTotal
- 9/91
- Blocklists
- 2 · MetaMask, SEAL
- التوفر
- المحتوى غير متوفر · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
mexcopsi.com — المحتوى غير متوفر (HTTP 502). انتحال العلامة التجارية: MEXC; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 9/91 (Fortinet, LevelBlue); URLQuery 4 alerts; Google Safe Browsing flagged; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 85/100. مسجّل النطاق: GoDaddy.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
The domain mexcopsi.com presents a high risk to users due to brand impersonation, specifically masquerading as the legitimate MEXC cryptocurrency exchange. This type of threat, known as brand impersonation, aims to trick visitors into revealing sensitive information such as login credentials or private keys, potentially leading to financial loss.
Technical analysis reveals concerning indicators: VirusTotal flags this domain with 9 out of 95 security vendors marking it as malicious. The domain was registered on April 23, 2026, through GoDaddy.com, LLC, and resolves to IP address 39.109.117.89, hosted in an undisclosed location. It appears on three security blocklists and is flagged by Google Safe Browsing as phishing. The SSL certificate is issued by Let's Encrypt (R13), which, while legitimate, can be obtained by anyone. Additionally, AlienVault OTX lists it in one threat intelligence pulse, and the domain's current status is offline.
To protect against this brand impersonation threat, users should never enter login credentials, personal information, or cryptocurrency wallet details on any site that resembles mexcopsi.com. Always verify the official MEXC URL from trusted sources, enable two-factor authentication on your exchange accounts, and report any suspicious domains to security services. If you have already interacted with this site, change your passwords immediately and monitor your accounts for unauthorized activity.
نطاق تغطية البيانات12 recorded checks
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | mexcopsi.com |
malicious | Sinkholed |
| Hagezi Threat Feed | api.mexcues.com |
malicious | Sinkholed |
| DNS4EU | api.mexcues.com |
malicious | Sinkholed |
| Quad9 DNS | api.mexcues.com |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات · 4 identified
Vue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.
vuejs.org ثقة 100٪Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org ثقة 100٪HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org ثقة 100٪HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org ثقة 100٪تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of mexcopsi.com · checked May 1, 2026
الأدلة والتقارير الخارجيةIndependent lookups and source reports
PD-20260430-DA15AE Recipient: abuse@godaddy.com Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.