ostium[.]exchange
“Ostium Exchange - Trade Perpetuals, Swap with Deep Liquidity”
This domain presents an elevated risk as a brand impersonation threat, specifically designed to mimic MEXC's exchange platform. The site, titled 'Ostium Exchange - Trade Perpetuals, Swap with Deep Liquidity,' attempts to deceive users into believing they are interacting with a legitimate trading service. PhishDestroy identified this domain through its unique seed bac58c and confirmed its malicious intent.
Technical indicators reveal that ostium.exchange was registered through NiceNIC International Group Co., Limited and created on February 21, 2026. It resolves to IP address 172.67.157.52 and is flagged by 3 out of 95 security vendors on VirusTotal. The domain appears on one security blocklist and its SSL certificate is issued by Google Trust Services (WE1). Currently, the domain has been taken offline, but users should remain vigilant.
To protect against this brand impersonation threat, users should verify website URLs carefully and never enter credentials or private keys on unfamiliar domains. Enable two-factor authentication on all exchange accounts and monitor for unauthorized activity. Report any suspicious domains like ostium.exchange to security teams and consider using browser extensions that block known phishing sites.
Network Security Intelligence Registrar context
Threat Response Pipeline
Public Blocklist Status
Stored Capture
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-09-01 02:46:27 UTC
Technologies · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal Analysis
Archived Evidence
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of ostium.exchange · checked Mar 2, 2026
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive