PhishDestroy first observed gxecghz.com on Apr 22, 2026. The captured page title is “GCEX”. Current evidence score: 100/100 (critical).
Positive findings are stored from 5 sources: VirusTotal, MetaMask, SEAL, Spamhaus DBL, and URLQuery. VirusTotal recorded 15 detections among 91 engines: ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, ESET, Forcepoint ThreatSeeker, Fortinet, G-Data, Kaspersky, Lionic, SOCRadar, Sophos, VIPRE, Webroot on Jul 26, 2026 at 08:43 UTC. MetaMask and SEAL listed the hostname in the separate external-blocklist snapshot on Aug 8, 2026 at 10:20 UTC. Spamhaus DBL: DBL_SPAM on Jul 26, 2026 at 10:30 UTC. URLQuery recorded 2 threat-system alerts on Jul 28, 2026 at 18:32 UTC. Non-positive and contextual checks: AlienVault OTX listed 2 community pulse references (not vendor detections) on Jul 26, 2026 at 08:48 UTC. Google Safe Browsing returned no flag on Jul 26, 2026 at 08:43 UTC. URLScan completed without a malicious verdict (score 0) on Jul 29, 2026 at 02:40 UTC.
HTTP 200 was recorded on Aug 8, 2026 at 10:19 UTC. Registration records for the domain list Dominet (HK) Limited as the registrar and Jan 3, 2026 as the creation date. At collection time, the hostname resolved to 112.213.108.93 on AS152194 (CTG Server Limited). The recorded endpoint location is Fo Tan, HK. The stored server header is nginx. DOM analysis on Jul 29, 2026 at 02:20 UTC returned 100/100. The evidence archive retains 3 visual captures from PhishDestroy, URLScan, and URLQuery. TLS metadata lists Let's Encrypt as the certificate issuer with validity through Aug 29, 2026; checked Jul 28, 2026 at 19:02 UTC.
The content indicators and 5 positive source findings support the current phishing classification. The stored fields do not identify an impersonated brand or victim interaction.