الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 13. قوائم الحظر العامة التي تبلغ عن تطابق: 2. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

pcrtal[.]tmgmexchanges[.]top

“Coincheckusa”

حكم التهديد حرجة 95/100 درجة الأدلة
التوفر المحتوى غير متوفر لم يكن المحتوى متاحًا في الملاحظة الأخيرة
اكتشافات VirusTotal: 13/94 تطابقات القائمة السوداء المخزنة: 2 URLQuery threat systems: 1 alert انتحال العلامة التجارية: MEXC
16/03/2026 MEXC 1 Report Sent
ملخص التقرير

pcrtal.tmgmexchanges.top — المحتوى غير متوفر. انتحال العلامة التجارية: MEXC; نوع الاحتيال: Crypto Scam. ملخص الأدلة: VirusTotal 13/94 (ADMINUSLabs, BitDefender, CRDF, CyRadar, ESET); URLQuery 1 alert; Google Safe Browsing flagged; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100. مسجّل النطاق: Gname.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
DDE820CD
الدرجة
95/100

Analysis of pcrtal.tmgmexchanges.top indicates a high-risk crypto scam impersonating the MEXC brand, as identified by multiple security vendors and blocklists. The domain was registered on August 17, 2025, through Gname.com Pte. Ltd. and currently resolves to IP address 116.204.186.140, hosted on AS9294 (GNET INC.) in Hong Kong. Infrastructure analysis reveals the use of nameservers a10.share-dns.com and b10.share-dns.net, a pattern observed in other phishing campaigns. The page title, 'Coincheckusa,' does not align with the claimed MEXC impersonation, suggesting either misconfiguration or an attempt to obfuscate the true target.

Detection data confirms the domain is flagged by 13 of 94 security vendors on VirusTotal, with additional blocking by PhishDestroy, MetaMask, and SEAL. It appears on three security blocklists, and Google Safe Browsing classifies it as social engineering. The domain is currently offline, though this status may change.

Defenders should treat this domain as malicious and prioritize blocking it at the DNS and network levels, particularly in environments where cryptocurrency platforms are accessed. The discrepancy between the page title and the impersonated brand warrants further investigation to determine if additional targets or kits are involved. No evidence of active payload delivery or wallet-draining scripts has been confirmed at this time.

VirusTotal
VirusTotal
13 det.
URLQuery
URLQuery
1 threat alert
العمر
12 mo
الحالة المرصودة
المحتوى غير متوفر
PhishDestroy
قائمة الإتلاف
مُدرج
Reports Sent
1
نطاق تغطية البيانات VirusTotal 13 / 94 URLQuery 1 threat-system alert PhishStats checked — no match recorded OTX no community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict التقييم غير متاح حجب عناوين DNS لم يتم التحقق منها TLS لا توجد بيانات للشهادة WHOIS 12 mo old لقطة شاشة 3 captures · 3 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكات
Threat Detection Systems 1 alert
Detection System Indicator Verdict Alert
DNS4EU pcrtal.tmgmexchanges.top malicious Sinkholed

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
14/14

حالة قوائم الحظر العامة

لقطة محفوظة

عنوان الصفحة
Coincheckusa

معلومات النطاق

النطاق
Google Safe Browsing تم وضع علامة عليها Social engineering checked 16/03/2026
الخادم / ASN nginx · AS9294 GNETINC-AS-AP GNET INC., US
سمعة عنوان IP abuse score 0/100 0 reports checked 14/07/2026
Registrar (base domain) Gname SG(SG)
عنوان IP 116.204.186.140 HK
الموقع الجغرافيHK Hong Kong, HK
الشبكةAS9294 · GNET INC.
Registration (base domain)tmgmexchanges.top · تم إنشاؤه 17/08/2025 (362d)
الوقت حتى أول تعذّر للوصول 3 days
ما الذي نحتسبه الوقت المنقضي من أول تقرير عن إساءة الاستخدام المخزن إلى الملاحظة الأولى بأن المحتوى غير متوفر. هذا لا يحدد السبب.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف16/03/2026
DOM Analysisanalyzed 29/07/2026score 90/100
IoC Extractionscanned 01/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://pcrtal.tmgmexchanges.top/
خوادم الأسماءa10.share-dns.comb10.share-dns.net
Case ID
ICANN OVERSIGHT Registration: tmgmexchanges.top

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For the registrable domain tmgmexchanges.top behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

13 / قام موردو الأمان 94 بوضع علامة على هذا المجال
View on VT
Last analyzed
ADMINUSLabs
BitDefender
CRDF
CyRadar
ESET
Fortinet
G-Data
Google Safebrowsing
Lionic
SOCRadar
سوفوس
VIPRE
Webroot
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of pcrtal.tmgmexchanges.top · checked Mar 16, 2026

38
Poor
Performance
FCP
4.18s
First Contentful Paint
LCP
19.95s
Largest Contentful Paint
CLS
0.389
Cumulative Layout Shift
TBT
83ms
Total Blocking Time
SI
14.8s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

الأدلة والتقارير الخارجية

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260316-F08C57 Recipient: abuse@gnet.cc
Page title stored with report: Coincheckusa
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 66.7 KB
نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/pcrtal.tmgmexchanges.top"
  title="PhishDestroy threat report for pcrtal.tmgmexchanges.top"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

رسالة شكر صادقة جداً

منشئ مسودة ساخرة

المستلم
سياق الرسوم

مسودة ساخرة. أرقام الرسوم تقديرية، ولا ندّعي نسبتها بدقة إلى هذا النطاق.