mexcror[.]cc
Análisis de phishing y seguridad de mexcror.cc
“MEXC”
mexcror.cc — Último activo conocido (HTTP 301). Suplantación de marca: Mexc; Tipo de estafa: Fake Exchange. Resumen de las pruebas: VirusTotal 6/91 (alphaMountain.ai, Chong Lua Dao, CRDF, Forcepoint ThreatSeeker, Gridinsoft); PhishDestroy score 80/100. Registrador: Gname.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
The domain mexcror.cc has been identified as a confirmed brand impersonation site targeting the cryptocurrency exchange MEXC. Analysis indicates this domain was designed to mimic the legitimate platform, likely to facilitate credential harvesting or fraudulent transactions. As of the latest assessment, the domain is offline, though prior activity suggests it operated as a high-risk impersonation endpoint. Infrastructure analysis reveals the domain was registered on September 10, 2025, through Gname.com Pte. Ltd., a registrar frequently associated with suspicious domains. It resolved to the IP address 104.21.14.216 and employed Cloudflare services, including HTTP/3 and HSTS, to obfuscate its origin and enhance perceived legitimacy. Detection metrics show the domain was flagged by 1 of 95 security vendors on VirusTotal, while appearing on a single security blocklist. Additional indicators include a Gridinsoft trust score of 0/100 and the use of a Google Trust Services SSL certificate, further corroborating its malicious classification. The page title explicitly mirrored the legitimate MEXC brand, reinforcing its deceptive intent. Given the domain's current offline status, immediate threats to end users are mitigated. However, organizations and individuals are advised to treat any prior interactions with mexcror.cc as compromised. Security teams should update blocklists to include this domain and its associated IP address, while monitoring for re-registration or similar impersonation attempts. Users who accessed the site should revoke active sessions, reset credentials, and inspect connected devices for unauthorized activity. Proactive measures, such as domain monitoring and phishing awareness training, are recommended to mitigate future risks from similar campaigns.
Inteligencia de seguridad de red
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Tecnologías · 5 identified
Progressive JavaScript framework for building user interfaces.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Análisis de VirusTotal
Evidencias archivadas
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of mexcror.cc · checked Jun 27, 2026
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.