The domain meopex.com was registered on July 28 2026 through Fewmoretaps OU d/b/a Trustname.com. It resolves to the IPv4 address 64.7.198.11 and uses Cloudflare name servers ligia.ns.cloudflare.com and porter.ns.cloudflare.com. The domain is currently listed on three public security blocklists and is actively blocked by PhishDestroy, MetaMask, and SEAL. VirusTotal reports that the domain has been scanned by 91 antivirus and URL‑filtering vendors; none of the scanners raised a detection at the time of analysis.
No public SSL certificate details, HTTP response codes, or page title information have been disclosed. The short age of the domain, combined with its immediate appearance on multiple blocklists, suggests that it was deployed for malicious purposes shortly after registration. The classification provided as “generic phishing” aligns with the observed blocklist activity, though the specific lure or credential‑harvesting mechanism has not been publicly documented.
Defenders should continue to enforce network‑level blocking of the domain and its IP address, incorporate the three blocklist entries into web‑gateway and DNS filtering policies, and monitor for any DNS or HTTP traffic directed to 64.7.198.11. Additional threat‑intel collection, such as requesting a full URL scan from sandbox services or retrieving the site’s TLS certificate, would help validate whether the domain hosts active phishing pages or has been repurposed. Until further evidence emerges, the domain remains high‑risk and should be treated as hostile.