MALICIOUS — CRITICAL
mexcopo[.]cc
This domain, mexcopo.cc, is identified as a brand impersonation threat targeting the cryptocurrency exchange MEXC.
- VirusTotal
- 5/91
- Blocklists
- No stored match
- Disponibilidad
- Último activo conocido · HTTP 301
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
mexcopo.cc — Último activo conocido (HTTP 301). Suplantación de marca: Mexc; Tipo de estafa: Fake Exchange. Resumen de las pruebas: VirusTotal 5/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); PhishDestroy score 80/100. Registrador: Gname.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
Evidence Analysis
This domain, mexcopo.cc, is identified as a brand impersonation threat targeting the cryptocurrency exchange MEXC. Analysis indicates the site was designed to deceive users into believing they were accessing the legitimate MEXC platform, likely to harvest credentials or facilitate unauthorized transactions. The page title explicitly displayed 'MEXC,' reinforcing the fraudulent branding, though no specific drainer kit signatures were confirmed in the available telemetry. Infrastructure analysis reveals the domain was registered on September 10, 2025, through Gname.com Pte. Ltd., a registrar frequently associated with high-risk domains. It resolved to the IP address 188.114.97.3, a Cloudflare-hosted endpoint, which may have been leveraged to obfuscate the true origin of the malicious activity. At the time of detection, the domain was flagged by 7 out of 95 security vendors on VirusTotal, indicating moderate to elevated suspicion. It appeared on a single security blocklist, and the Gridinsoft trust score was 0/100, further corroborating its malicious classification. The site employed technologies such as Vue.js, HSTS, and Cloudflare Browser Insights, which are not inherently malicious but are often exploited to enhance the perceived legitimacy of phishing pages. As of the latest assessment, mexcopo.cc has been taken offline, likely due to enforcement actions by hosting providers or domain registrars. However, the risk of reemergence remains elevated, as threat actors frequently re-deploy similar infrastructure under new domains. Users who may have interacted with this domain are advised to immediately revoke any active sessions, reset credentials, and monitor for unauthorized transactions. Organizations should update blocklists to include this domain and its associated IP, while also educating users on identifying brand impersonation tactics in cryptocurrency-related communications.
Cobertura de los datos12 recorded checks
Inteligencia de seguridad de red
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Tecnologías · 5 identified
Progressive JavaScript framework for building user interfaces.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Análisis de VirusTotal
Evidencias archivadas
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of mexcopo.cc · checked Jun 27, 2026
Datos y informes externosIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.