ordexia-bot[.]com
“OrdexiaBot - Plataforma Oficial | Trading IA 2025 | Más de 10.000 Reseñas”
Riepilogo delle prove
Analysis of the domain ordexia-bot.com, registered February 21, 2026, indicates active brand impersonation targeting the Base platform. The domain was taken offline by July 24, 2026, following detection by PhishDestroy. Infrastructure analysis reveals Cloudflare hosting (AS13335) on IP 188.114.96.3, with nameservers chad.ns.cloudflare.com and shubhi.ns.cloudflare.com. No SSL certificate was observed.
The page title, 'OrdexiaBot - Plataforma Oficial | Trading IA 2025 | Más de 10.000 Reseñas,' explicitly references an official trading platform, aligning with the brand impersonation classification. Detection data is limited: one of 93 security vendors on VirusTotal flagged the domain, and it appears on a single security blocklist. Gridinsoft assigned a trust score of 0/100, reinforcing its malicious classification. The domain was registered through Metaregistrar BV, though no additional registrar abuse contacts or historical patterns are documented.
While the exact content of the site remains unanalyzed, the page title and scam type suggest an attempt to deceive users into engaging with a fraudulent trading service under the guise of Base's branding. Defenders should treat this domain as confirmed malicious, block it at the DNS and proxy levels, and monitor for related infrastructure (e.g., Cloudflare IPs or similar naming conventions). Given its offline status, no active payloads are expected, but retrospective log analysis may identify prior victim interactions. Further investigation into the hosting provider and registrar could uncover additional linked domains or campaigns.
Istantanea delle prove inviate
- Inviato
- Voci del registro
- 1
- ID del caso
PD-20260107-DDA67D- Titolo della pagina acquisita
- OrdexiaBot - Plataforma Oficial | Trading IA 2025 | Más de 10.000 Reseñas
- Artefatto PDF
- Prova in PDF
Base giuridica
Testo completo delle prove
Acceptable Use Policy (AUP): The domain ordexia-bot.com is engaged in phishing activities, which directly contravenes the AUP by facilitating fraud and deception.
Terms of Service (TOS): The registrar reserves the right to suspend or terminate services for violations, and the ongoing use of this domain for illegal activities warrants immediate action.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. law prohibits unauthorized access to computers and networks, which is applicable as phishing schemes often involve unauthorized data access.
Wire Fraud Statute (18 U.S.C. § 1343): This law criminalizes schemes to defraud individuals or entities via electronic communications, which is relevant to the phishing activities associated with this domain.
CAN-SPAM Act (15 U.S.C. § 7701): This legislation regulates commercial email and prohibits deceptive practices, which are inherent in phishing operations.
Regulatory Note: Failure to take prompt action against this domain may expose your organization to legal liability and regulatory scrutiny. Immediate suspension is recommended to mitigate risks associated with non-compliance.
Data Coverage
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 11/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Cronologia del rilevamento
-
Cloudflare Radar
Scansione Cloudflare Radar archiviata · Apri scansione
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, nomi TLS e date
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisi di VirusTotal
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo