Analysis indicates that turboswap-dex.net was registered on July 30, 2026 and remains active as of the report date, July 31, 2026. The domain is listed under the registrar Fewmoretaps OU operating as Trustname.com, and its authoritative name servers include ares.trustname.com, ns1.anycastdns.cz, ns2.anycastdns.cz, and zeus.trustname.com. DNS resolution points to the IPv4 address 186.2.175.35.
The domain appears on a single security blocklist and has been flagged by the PhishDestroy blocking service. VirusTotal reports that the domain was examined by 91 security vendors, none of which raised a detection; however, the lack of detections does not constitute evidence of benign behavior. No public evidence of SSL certificate details, HTTP response codes, Safe Browsing status, OTX references, or page title information is available at this time.
Consequently, the observable technical footprint consists of registration metadata, name‑server configuration, IP address, and blocklist presence. Defenders should continue to monitor the domain, enforce DNS‑based blocking based on the known IP and name‑server set, and consider adding the domain to internal blocklists. Ongoing threat‑intel feeds should be queried for any emerging indicators, such as payload hashes or phishing kit signatures, that may later be associated with this infrastructure.