xrpmarkets[.]io
“XRPMarkets | XRP Exchange Rates Monitoring”
xrpmarkets.io — Non vérifié. Type d'arnaque : Fake Exchange. Résumé des preuves: VirusTotal 5/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 90/100.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
This domain was registered on May 21 2026 and currently resolves to IP address 188.114.96.3 hosted via CloudFlare infrastructure in CA. It presents an SSL certificate from Let's Encrypt identified by serial E8 and maintains MX records directing to smtp.google.com at priority 1. The domain returns HTTP status 200 and displays the exact page title XRPMarkets | XRP Exchange Rates Monitoring while remaining listed as active.
Threat intelligence records place the domain in one AlienVault OTX pulse. Five out of 95 vendors on VirusTotal have flagged the domain. Three security blocklists contain the entry. Blocking actions are recorded from PhishDestroy MetaMask and SEAL with a Gridinsoft trust score reported as 0 out of 100.
The combination of recent registration low trust metrics and explicit blocklist presence aligns with the assigned high risk level under generic phishing classification. Infrastructure details such as the CloudFlare IP and Let's Encrypt certificate are consistent with many short lived domains used for similar activity but do not independently confirm intent.
Defenders should add the domain and its current IP 188.114.96.3 to internal block lists and inspect network logs for connections or DNS queries. Email flows involving the smtp.google.com MX record warrant review for potential delivery of related messages. Ongoing monitoring of the domain status and any new resolutions is recommended given the confirmed active state on the report date of July 12 2026.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
Analyse VirusTotal
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif