cex-io-user-login[.]at
“CEX io Prijava Berza | cex io login”
cex-io-user-login.at — Konten tidak tersedia. Peniruan identitas merek: CEX IO; Jenis penipuan: Credential Phishing. Ringkasan bukti: VirusTotal 17 detections (engine total unavailable) (ADMINUSLabs, BitDefender, CRDF, CyRadar, ESET); URLQuery 3 alerts; URLScan malicious verdict; Spamhaus DBL_PHISH; CF Radar malicious; PhishDestroy score 95/100. Registrar: Iqweb.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
This domain, cex-io-user-login.at, is a credential phishing infrastructure designed to harvest login credentials from users attempting to access the legitimate CEX.IO cryptocurrency exchange platform. The domain mimics the official CEX.IO login interface, presenting a page titled 'CEX io Prijava Berza | cex io login,' which targets users through localized language deception. Analysis indicates the domain is engineered to capture usernames, passwords, and potentially two-factor authentication codes, enabling unauthorized access to victim accounts and subsequent theft of digital assets. Infrastructure analysis reveals multiple technical indicators confirming malicious intent. The domain was registered on February 27, 2026, through the registrar Iqweb, and resolves to the IP address 186.2.175.29, hosted on AS59692 (IQWeb FZ-LLC) in Belize. Security vendor detection on VirusTotal shows 17 out of 95 engines flagging the domain as malicious, while it appears on one security blocklist. The domain uses a Let's Encrypt SSL certificate (R12), which, while providing HTTPS encryption, does not validate legitimacy. The hosting provider and registration details align with patterns observed in credential phishing campaigns targeting financial platforms. Users who visited cex-io-user-login.at should immediately revoke any active sessions on the legitimate CEX.IO platform and change their login credentials. Enable multi-factor authentication using an authenticator application rather than SMS-based verification. Monitor account activity for unauthorized transactions and report any suspicious behavior to the platform's security team. If credentials were entered on this domain, assume they are compromised and avoid reusing them across other services. Security teams should block the domain and associated IP address (186.2.175.29) at the network perimeter to prevent further access attempts.
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | cex-io-user-login.at |
phishing | Phishing Block |
| Cloudflare DNS | cex-io-user-login.at |
malicious | Sinkholed |
| DNS4EU | cex-io-user-login.at |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Teknologi · 3 identified
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
Analisis VirusTotal
Bukti Terarsip
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of cex-io-user-login.at · checked Mar 2, 2026
Bukti & Laporan Eksternal
PD-20260227-099E6B Recipient: abuse@iqweb.io Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive