nexustradeforgeso[.]com
“nexustradeforgeso || FX Trading With Class”
ملخص الأدلة
This domain nexustradeforgeso.com was created on June 30 2026 and currently resolves to IP address 198.251.84.200 located in LU. The infrastructure uses nameservers ns5.asurahosting.com ns5.my-control-panel.com ns6.asurahosting.com ns6.my-contro and presents an HTTP 302 redirect with page title nexustradeforgeso || FX Trading With Class. SSL certificate details show issuance via Let's Encrypt / YR2 while registration occurred through DYNADOT LLC. Known intelligence records the scam classification as Fake Exchange with generic_phishing threat type and confirms the domain remains active on July 12 2026. VirusTotal detection stands at 15 out of 95 vendors with presence on exactly one security blocklist and a Gridinsoft trust score of 3/100. PhishDestroy has applied a block against the domain. Analysis indicates recent registration paired with low trust metrics but provides no visibility into operator identity or backend infrastructure ownership beyond the listed IP and nameserver data. Uncertainty remains around the exact content served after the 302 redirect and any additional subdomains or related infrastructure not captured in current records. Defenders should incorporate the exact IP 198.251.84.200 and domain nexustradeforgeso.com into firewall and proxy block rules while monitoring DNS queries to the listed nameservers. Incident responders can cross reference the page title string and creation date of June 30 2026 against internal logs to identify prior exposure. Network teams should also watch for traffic to 198.251.84.200 and validate any certificates issued under Let's Encrypt / YR2 that match the domain. Continued observation of the single blocklist entry and VirusTotal count provides a baseline for tracking changes in detection coverage over time.
لقطة الأدلة المرسلة
- أُرسل
- سجلات الدفتر
- 1
- معرّف القضية
PD-20260701-FF7BF0- ملف PDF
- دليل PDF
الأساس القانوني
النص الكامل للدليل
Policy Violations: Acceptable Use forbids illegal content; Spam & Abuse Policy prohibits phishing, fraud, malware; Dynadot may disable DNS and suspend domains
Applicable Laws: CFAA 18 U.S.C. §1030, Wire Fraud 18 U.S.C. §1343, CAN-SPAM Act
Data Coverage
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
المخطط الزمني للاكتشاف
-
حالة النطاق
يمكن الوصول إليه ← يتعذر الوصول إليه
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب