MALICIOUS — CRITICAL
tepomex[.]com
Analysis of tepomex.com shows a high‑risk brand‑impersonation campaign targeting the MEXC exchange.
- VirusTotal
- 5/91
- Blocklists
- No stored match
- التوفر
- يمكن الوصول إليها · الوصول مقيد · HTTP 403
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
tepomex.com — يمكن الوصول إليها · الوصول مقيد (HTTP 403). انتحال العلامة التجارية: MEXC; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 5/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); PhishDestroy score 88/100. مسجّل النطاق: Fewmoretaps OU d/b/a T….
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
tepomex.com Fake MEXC Alert
Analysis of tepomex.com shows a high‑risk brand‑impersonation campaign targeting the MEXC exchange.
Analysis of tepomex.com shows a high‑risk brand‑impersonation campaign targeting the MEXC exchange. The site presents a page title of "Home | Tepomex" and is protected by a Let’s Encrypt certificate (E7). DNS resolution points to 172.67.182.85, an address owned by Cloudflare, Inc. in Canada, and the domain leverages Cloudflare services including Browser Insights and HTTP/3. Infrastructure signals include a Gridinsoft trust score of 1/100 and presence in four AlienVault OTX pulses. The domain was registered on June 9, 2026 through Fewmoretaps OU d/b/a Trustname.com and is currently listed on one security blocklist, with PhishDestroy already blocking it. VirusTotal scans report five of ninety‑one security vendors flagging the domain. HTTP responses return a 403 status, indicating restricted access to the underlying content. While the visible page title suggests a generic landing page, no further content analysis is available, leaving the exact phishing payload unverified. Defenders should immediately block tepomex.com at perimeter and endpoint layers, add it to internal threat‑intel feeds, and monitor for any related C2 activity or credential‑harvesting attempts associated with the MEXC brand. Continuous observation of Cloudflare‑originated IP ranges and correlation with the reported threat pulses is advised to capture potential re‑hosting attempts.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
نطاق تغطية البيانات13 recorded checks
استخبارات أمن الشبكات Registrar context
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات · 4 identified
Facebook pixel is an analytics tool that allows you to measure the effectiveness of your advertising.
facebook.com ثقة 100٪Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com ثقة 100٪Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com ثقة 100٪HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org ثقة 100٪تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of tepomex.com · checked Jun 26, 2026
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.