dex-fluid[.]net
“Fluid DEX â The Unified DeFi Liquidity Layer on Tron”
Observación almacenada
Contraste de títulos observado
Resumen de las pruebas
Analysis of dex-fluid.net indicates a recently registered domain exhibiting characteristics consistent with phishing infrastructure. The domain was created on July 31, 2026, and remains active as of August 05, 2026. It is currently flagged on one security blocklist, PhishDestroy, though no detections are recorded among the 91 vendors that have scanned it on VirusTotal. The absence of detections does not confirm safety, as phishing domains often evade initial scans through rapid deployment or obfuscation techniques. Infrastructure analysis reveals the domain is hosted behind Cloudflare, resolving to the IP address 104.21.49.168.
Nameservers elijah.ns.cloudflare.com and teagan.ns.cloudflare.com further confirm Cloudflare’s role in its hosting and DNS management. Cloudflare’s services are frequently leveraged by threat actors to obscure malicious infrastructure, complicating takedown efforts and delaying detection. The registrar, Fewmoretaps OU operating under Trustname.com, has been associated with other high-risk domains, though no direct evidence links this registrar to malicious intent in this specific case. No brand, scam type, or page content has been confirmed in available intelligence. The domain’s exact purpose remains unclear, as no HTTP status, SSL anomalies, or page title data is currently available.
Defenders should treat this domain as suspicious based on its recent registration, Cloudflare hosting, and blocklist presence. Monitoring for additional detections, behavioral analysis of traffic patterns, and reviewing logs for connections to 104.21.49.168 are recommended. If the domain is encountered in enterprise environments, it should be blocked pending further investigation, particularly given its inclusion on PhishDestroy’s blocklist. Further analysis, including sandboxed inspection of the site, is advised to determine its specific threat profile.
Data Coverage
Inteligencia de seguridad de red
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 10/08/2026
10 fuentes externas supervisadas Sin coincidencias
Cronología de detección
-
Primer registro
Primer valor almacenado: Accesible
-
Estado del dominio
Accesible → Inaccesible
-
Estado del dominio
Inaccesible → Accesible
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, nombres TLS y marcas de tiempo
ICANN OVERSIGHT
Acreditación y contexto RAA
Acreditación y contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologías
4 tecnologías identificadas con alta confianza
Análisis de VirusTotal
Evidencias archivadas
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.