सुरक्षा रिपोर्ट पर जाएँ
डोमेन सुरक्षा और ख़तरे की आसूचना
duplicate-disabled-225599.invalid favicon

duplicate-disabled-225599.invalid

“Anonymous Cryptocurrency Exchange Without KYC AML Verification”

रजिस्ट्रार
SOLLUTIUM
Resolved IP
104.21.43.172
Registered
25/01/2026
धमकी भरा फैसला गंभीर
उपलब्धता सामग्री अनुपलब्ध नवीनतम अवलोकन में सामग्री अनुपलब्ध थी
वायरस का कुल पता लगाना: 12/91 URLQuery threat systems: 1 alert घोटाले का प्रकार: Investment Scam
01/06/2026 CDN
एपीआई
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 12। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
रिपोर्ट सारांश

secrex-exchange.com impersonates anonymous cryptocurrency platforms, deploying credential theft. Detected by 14/95 security vendors, this domain targets users.

मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।

VirusTotal
VirusTotal
12 det.
URLQuery
यूआरएलक्वेरी
1 threat alert
DNS Security
3/14
URLScan
यूआरएलस्कैन
TLS प्रमाणपत्र
समाप्त या असत्यापित
आयु
9 mo
देखी गई स्थिति
सामग्री अनुपलब्ध
PhishDestroy
विनाश सूची
सूचीबद्ध

Source evidence

8 sources

डीएनएस ब्लॉक

3/14

नेटवर्क सुरक्षा इंटेलिजेंस
DNS Provider Blocks 3 / 14
Controld Adblock Controld Family Controld Malware
Threat Detection Systems 1 alert
Detection System Indicator Verdict Alert
DNS4EU www.secrex-exchange.com malicious Sinkholed

साक्ष्य सारांश

गंभीर
VirusTotal
12/91
यूआरएलस्कैन
Stored capture

This domain, secrex-exchange.com, is flagged as a credential theft operation targeting cryptocurrency users under the guise of an anonymous, KYC-free exchange. Analysis indicates the site mimics legitimate platforms offering privacy-focused trading, a common tactic to lure victims into disclosing wallet credentials or transferring funds to attacker-controlled addresses. No specific drainer kit signatures were identified, but the page title explicitly advertises "Anonymous Cryptocurrency Exchange Without KYC AML Verification," a red flag for fraudulent services. Infrastructure analysis reveals the domain was registered on January 25, 2026, through SOLLUTIUM LLC, an entity frequently associated with high-risk registrations. It resolves to the IP address 104.21.43.172, which is proxied through Cloudflare, obscuring the true origin of the hosting infrastructure. The domain is detected by 14 out of 95 security vendors on VirusTotal, and it appears on one security blocklist. The SSL certificate is issued by Google Trust Services, providing a false sense of legitimacy. Technologies detected include Cloudflare Browser Insights and HTTP/3, further indicating the use of modern evasion techniques. As of the latest assessment, secrex-exchange.com has been taken offline, likely due to enforcement actions or the operator abandoning the campaign. However, the domain remains registered, and the infrastructure could be reactivated or repurposed for future attacks. Users who interacted with the site are advised to monitor their cryptocurrency wallets for unauthorized transactions and revoke any connected permissions. Organizations should update blocklists to include this domain and its associated IP to prevent future exposure.

खोज-परहेज़ विश्लेषण

क्लोकिंग और ट्रैफ़िक-वितरण जाँच

प्राप्त नहीं हुआ संग्रहीत स्कैन में कोई क्लोकिंग नहीं देखी गई।

इस होस्ट के लिए संग्रहीत क्रॉलर-बनाम-ब्राउज़र अवलोकन, साथ ही केइतारो-शैली ट्रैफ़िक वितरण प्रणालियों के लिए लाइव फिंगरप्रिंट जांच।

संग्रहीत छुपाने वाला झंडा
प्राप्त नहीं हुआ
क्लोकिंग स्कोर
0/6
अंतिम छुपाने का स्कैन

स्कैनर नोट: unavailable: raw=connection_error; http=0; via=http_proxy; error=SOCKSHTTPConnectionPool(host='duplicate-disabled-225599.invalid', port=80): Max retries exceeded with url: / (Caused by

TDS लाइव फिंगरप्रिंट जांच
सात केइतारो फिंगरप्रिंट्स और एक क्रॉलर-बनाम-ब्राउज़र तुलना, जब यह पैनल खुला हो तो PhishDestroy स्कैनर से चलाया जाता है।
इंतज़ार

सहेजा गया कैप्चर · 3 captures

पेज शीर्षक
Anonymous Cryptocurrency Exchange Without KYC AML Verification
TLS प्रमाणपत्र
Certificate hostname mismatch · जारीकर्ता Google Trust Services · stored validity ends in 56 days

Domain details

डोमेन
URLScan Verdict विश्लेषण पूरा हुआ score 0 report ↗
IP Context Cloudflare shared edge origin IP hidden एज-आईपी प्रतिष्ठा इस डोमेन के लिए जिम्मेदार नहीं है।
रजिस्ट्रार SOLLUTIUM (REDACTED FOR PRIVACY)
दुरुपयोग संपर्कabuse@vsys.name
आईसीएएनएन रजिस्ट्रीICANN Lookup (RDAP) →
पंजीकरणनिर्मित 25/01/2026 (259d) — Expires 25/01/2027
पहली अनुपलब्धता तक का समय 17 days
हम क्या मापते हैं पहली संग्रहीत दुरुपयोग रिपोर्ट से लेकर पहली बार अवलोकन तक कि सामग्री अनुपलब्ध थी, बीता हुआ समय। इससे कारण स्थापित नहीं होता.
प्रत्येक रिपोर्ट में क्या शामिल है संग्रहीत आउटगोइंग-रिपोर्ट रिकॉर्ड उस समय उपलब्ध साक्ष्य का संदर्भ दे सकते हैं, जैसे विक्रेता के फैसले, पंजीकरण डेटा, होस्टिंग विवरण, वर्गीकरण, या स्क्रीनशॉट। यह पृष्ठ किसी प्राप्तकर्ता द्वारा वितरित सटीक पेलोड, रसीद, पावती या कार्रवाई का अनुमान नहीं लगाता है।
तकनीकी विवरणProvenance & timestamps
पहली बार पता चला01/06/2026
DOM Analysisanalyzed 01/06/2026score 88/100
Submitted URLhttps://www.secrex-exchange.com/
Favicon Hash
केस आईडी
ICANN OVERSIGHT

प्रत्यायन और आरएए संदर्भ

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

मान्यता एक अनुबंध है, सुरक्षा की मुहर नहीं। ICANN शुल्क सत्यापित करें RAA §3.18 पढ़ें PHISHDESTROY INVESTIGATIONICANN funding, contracts, and DNS abuse oversight
Accountability draft कुछ भी अपने आप नहीं भेजा जाता।

Network & certificates

Stored technical evidence

Network & DNS

Shared CDN edge
Resolved IP
104.21.43.172
Network ASN
AS13335
Organization
Cloudflare, Inc.
Observed location
San Francisco, US
Server header
cloudflare

एज-आईपी प्रतिष्ठा इस डोमेन के लिए जिम्मेदार नहीं है।

नेमसर्वर 2

  • milan.ns.cloudflare.com
  • samara.ns.cloudflare.com

Location describes the IP network.

TLS प्रमाणपत्र

Issuer
Google Trust Services
Valid from
2026-05-23 13:55:53
Valid until
2026-08-21 14:53:33
Hostname coverage
Certificate hostname mismatch
Validity
Stored certificate expired
Collection time
2026-06-01 05:00:05 UTC
Collection source
PhishDestroy collector
Certificate fingerprint39082f8810fb3cc7041ddd0a4a4032de428840627545052c9269830762f66139
Certificate names · 1 SANs
  • secrex-exchange.com

Saved certificate metadata. Certificate dates without a timezone are shown as stored. Transport encryption does not establish that the site is trustworthy.

viewdns.info · 104.21.43.172rapiddns.io

Latest Classified Outcome 2026-10-11 01:31:04 UTC

Primary outcome अज्ञात reason: Probe Inconclusive 20% confidence
Attribution source: Current Http Probe
Evidence layers Availability: Unreachable Content: Unknown DNS: Stale Registration: Unknown
Latest HTTP observation अज्ञात Probe Inconclusive 20% 2026-10-11 01:31:04 UTC
RDAP registration अज्ञात
Observed timeline last reachable: 2026-09-23 02:12:38 UTC
Availability, content, DNS and registration are independent evidence layers. NXDOMAIN, an unreachable origin or missing content alone does not prove registrar action. A registrar or provider is credited only when a direct technical marker identifies that actor. Report causality is shown separately.
तकनीकें · 3 identified
Detected via Cloudflare Radar · Wappalyzer engine
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

12 / 91 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed
alphaMountain.ai
BitDefender
ईएसईटी
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
Lionic
SOCRadar
सोफोस
VIPRE
वेबरूट

संग्रहीत साक्ष्य

Wayback Machine Snapshot
साक्ष्य समीक्षा के लिए एक ऐतिहासिक स्नैपशॉट उपलब्ध है
View Archive
साइट प्रदर्शन विश्लेषण

Google PageSpeed Insights — mobile performance audit of duplicate-disabled-225599.invalid · checked Jun 26, 2026

85
Needs Work
Performance
FCP
2.59s
First Contentful Paint
LCP
2.59s
Largest Contentful Paint
CLS
0.181
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
2.59s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

Forensic History & Detection Timeline

ThreatLifecycleTelemetry
This timeline displays historical security and status checkpoints observed by the PhishDestroy automated monitoring network. It records domain lifecycle updates, scanner changes, and threat telemetry over time.
  1. Domain Status Transition 2026-09-25 01:31:11 UTC
    Domain state transitioned from alive to dead.

धमकी प्रतिक्रिया पाइपलाइन

खोज
Analysis
Monitoring

12 recorded events. These records describe collected evidence, outgoing notifications and publication; they do not confirm a complete investigation or a takedown.

धमकी निगल ली गई
duplicate-disabled-225599.invalid पहचाना गया और पूर्ण विश्लेषण के लिए कतारबद्ध किया गया
01/06/2026
URLScan.io Capture
संग्रहीत URLScan report with capture artifacts
23/06/2026
Cloudflare Radar Report
A stored Cloudflare Radar report is available. The report link alone is not a malicious verdict and does not prove that every network field was captured.
Web Archive
Preserved in वेबैक मशीन — historical evidence archived
01/06/2026
VirusTotal
12/91 recorded on VirusTotal
28/08/2026
DNS Security Blocks
Blocked by 3 of 14 checked DNS providers: Controld adblock, Controld family, Controld malware
Forensic Evidence Collected
Stored evidence from URLScan.io, URLQuery, stored screenshot
23/06/2026
Technical Analysis Recorded
रिपोर्ट में संग्रहीत प्रौद्योगिकी या फोरेंसिक-विश्लेषण परिणाम शामिल हैं।
11/10/2026
Content Observed Unavailable
निगरानी ने एक अनुपलब्ध प्रतिक्रिया दर्ज की; कारण स्वतंत्र रूप से स्थापित नहीं किया गया था।
25/09/2026
डिस्ट्रॉयलिस्ट प्रकाशित
01/06/2026
Content Observed Unavailable
नवीनतम संग्रहीत जांच से संकेत मिलता है कि रिपोर्ट की गई सामग्री अनुपलब्ध है; इससे यह स्थापित नहीं होता कि परिवर्तन का कारण कौन या क्या है।
25/09/2026
पहली अनुपलब्धता तक का समय
पता लगाने से लेकर पहले अनुपलब्ध अवलोकन तक 405 घंटे बीत गए।
How we investigate & report

Public scans, evidence and abuse channels

We scan suspicious URLs, inspect public results and send evidence through the appropriate abuse-reporting channels. The dated events above show what is recorded for this domain. The directory below explains the wider workflow.

01Public scans & evidence collection10 sources and tool groups
urlscan.io Screenshot · DOM · HTTP

Capture the rendered page, requests and visible infrastructure.

VirusTotal Multi-engine verdicts

Compare the available engine results and retain the analysis timestamp.

Cloudflare Radar DNS · certificates · categories

Inspect a public scan and its recorded network and classification data.

crt.sh Certificate Transparency

Inspect certificate records and related hostnames.

DNS Security Filters Quad9 · AdGuard · CleanBrowsing

Compare security resolver responses and record observed blocking.

Web-Check Surface inspection

Inspect the public DNS, TLS, HTTP and technology surface.

02Abuse reports & follow-upRegistrar, hosting and security channels
  1. Identify the responsible provider. Match registration and hosting records to the relevant abuse contact.
  2. Prepare an evidence package. Include the URL, public scan references, captures and the recorded observations.
  3. Send the report. Keep outgoing report records and recipient information when available.
  4. Recheck and publish updates. Track later scanner verdicts, provider responses and site availability.

Security services used for scanning, reputation checks and reporting are listed below. A service being listed is not evidence that it received, accepted or acted on this particular domain. Recorded submissions appear in the notification history above.

साक्ष्य और बाहरी रिपोर्टें

गहन विश्लेषण

क्या आप इस साइट से प्रभावित हुए?

5 evidence signal groups linked 0 reports recorded सामग्री अनुपलब्ध
If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका

Template-based draft · optional AI wording assistance requires separate consent

एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है · इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/duplicate-disabled-225599.invalid"
  title="PhishDestroy threat report for duplicate-disabled-225599.invalid"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>