ethmix[.]xyz
“ethmix.xyz”
Ringkasan bukti
Analysis of ethmix.xyz indicates a cryptocurrency-themed phishing domain with elevated risk based on infrastructure and detection data. The domain was registered on June 28, 2025, through GMO Internet Group, Inc. d/b/a Onamae.com, and is currently offline, returning an HTTP 403 status. It resolves to an IPv6 address (2a02:26f0:480:5a6::1771) associated with AWS Global Accelerator in Canada, a common hosting choice for malicious campaigns due to its resilience and global reach. The domain appears on one security blocklist (PhishDestroy) and is flagged by 3 of 91 security vendors in VirusTotal, though the specific detection rules are not disclosed in the available data.
Infrastructure reveals the use of Akamai technologies, which may indicate content delivery or proxy services, and an SSL certificate issued by GoDaddy.com, Inc. (Go Daddy Secure Certificate Authority - G2). The absence of valid MX records suggests the domain is not configured for email, a common trait in phishing domains designed for short-term abuse rather than sustained communication. The page title, matching the domain name (ethmix.xyz), provides no additional context about the intended target or scam type, though the domain name itself implies a focus on Ethereum or cryptocurrency-related fraud. Gridinsoft assigns a trust score of 0/100, reinforcing the domain's high-risk classification.
While the domain is currently offline, defenders should treat it as active in monitoring systems due to the potential for reactivation. Network-level blocking is recommended for the domain and its associated IP, particularly in environments handling cryptocurrency transactions. Further investigation into related domains registered through the same registrar or hosted on similar infrastructure may uncover additional threats. No evidence of a specific phishing kit or brand impersonation is present in the available data, limiting attribution beyond the generic cryptocurrency phishing classification.
Data Coverage
Alur Tanggapan Ancaman Pipeline
Cakupan daftar blokir
10 sumber eksternal dipantau · snapshot tersimpan 12/08/2026
Tangkapan tersimpan
Intelijen Domain
Detail teknisDNS, nama TLS, dan stempel waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknologi
1 teknologi dengan keyakinan tinggi teridentifikasi
Analisis VirusTotal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive