zepdex[.]com
“Buy & Sell Bitcoin, Ethereum | Cryptocurrency Exchange | ZepDex”
Analysis as of July 23, 2026 indicates that the domain zepdex.com is actively used for brand impersonation targeting Ethereum users. The site was registered on February 24, 2025 through NiceNIC International Group Co., Limited and currently resolves to the IP address 104.21.54.17, which belongs to Cloudflare, Inc. (AS13335) and is geolocated in the United States. The domain is served behind Cloudflare's network and leverages HTTP/3, but it does not present an SSL certificate, resulting in an unsecured HTTP connection that returns a 302 redirect status code. The page title presented by the site—“Buy & Sell Bitcoin, Ethereum | Cryptocurrency Exchange | ZepDex”—explicitly references Ethereum, confirming the claim of brand impersonation. The threat is classified as Social Media Phishing, suggesting that attackers may distribute malicious links via social platforms to lure victims into providing credentials or financial information.
Intelligence from AlienVault OTX shows the domain appears in a single threat pulse, and the domain is listed on one external blocklist, where it has been blocked by PhishDestroy. VirusTotal analysis reports that eight of ninety‑five scanning engines flagged the domain, reinforcing the malicious assessment. Reputation metrics are extremely low; Gridinsoft assigns a trust score of 1 out of 100, indicating a high likelihood of abuse. No TLS certificate is observed, which may be an attempt to avoid certificate‑based reputation systems. The nameservers hank.ns.cloudflare.com and kami.ns.cloudflare.com are standard Cloudflare resolvers, offering no additional attribution.
Uncertainty remains regarding the specific phishing payload or credential‑capture mechanisms, as the content of the landing page has not been publicly dissected. Defenders should block any DNS resolution to zepdex.com, enforce URL filtering on known security gateways, and monitor outbound connections to the associated Cloudflare IP.
सुरक्षा संकेत
नेटवर्क सुरक्षा इंटेलिजेंस Registrar context
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 10/08/2026
पहचान समयरेखा
-
डोमेन स्थिति
पहुँच योग्य → पहुँच योग्य नहीं
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
तकनीकें
2 उच्च-विश्वसनीयता वाली तकनीकें पहचानी गईं
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।