Analysis of turboswap-dex.com as of July 30, 2026 shows that the domain is actively flagged for generic phishing. The domain was registered on July 22, 2026 through Fewmoretaps OU d/b/a Trustname.com and resolves to the IPv4 address 186.2.175.109. Infrastructure details reveal four nameservers: ares.trustname.com, ns1.anycastdns.cz, ns2.anycastdns.cz, and zeus.trustname.com, indicating a mixed hosting configuration that may be leveraged to increase resilience against takedown attempts.
The domain appears on a single security blocklist and has been explicitly blocked by PhishDestroy, confirming its inclusion in at least one reputable anti‑phishing feed. VirusTotal reports indicate that the domain has been scanned by 91 vendors, yet no detections have been recorded; this absence of flags should not be interpreted as evidence of legitimacy. No public data on SSL/TLS certificates, HTTP response codes, Safe Browsing status, OTX mentions, or page title is currently available, leaving those vectors unverified.
Defenders should treat the domain as hostile: immediately add turboswap-dex.com and its resolving IP 186.2.175.109 to DNS‑based blocklists, monitor traffic for any attempts to contact the listed nameservers, and consider sinkholing the IP if feasible. Continuous re‑evaluation is advised, especially if new threat intelligence emerges that expands the observable footprint or reveals additional malicious artifacts.