presapexmarkets[.]com
“Problem loading page”
Riepilogo delle prove
This domain, presapexmarkets.com, is flagged as an elevated-risk phishing infrastructure specifically designed for credential harvesting targeting financial and cryptocurrency trading platforms. Analysis indicates the site impersonates legitimate trading services to deceive users into submitting login credentials, API keys, or wallet recovery phrases, which are then exfiltrated to attacker-controlled endpoints. The threat type aligns with patterns observed in fake trading platform scams, where brand impersonation and social engineering are leveraged to exploit victims under the guise of market access or investment opportunities. Infrastructure analysis reveals the following technical indicators: the domain was registered on June 08, 2026, through Global Domain Group LLC, a registrar frequently associated with high-risk domains. It resolves to the IP address 163.61.188.9 and has been flagged by 10 out of 95 security vendors on VirusTotal, with detections spanning generic phishing, brand impersonation, and malicious URL categories. The domain appears on at least one security blocklist and has been documented in four threat intelligence pulses on AlienVault OTX. Gridinsoft assigns a trust score of 1/100, further corroborating its malicious classification. Frontend technologies detected include PHP, YouTube embeds, Tailwind CSS, LiteSpeed, Alpine.js, Unpkg, Smartsupp, and jQuery CDN, suggesting a sophisticated but templated approach to mimic legitimate trading platforms. The page title 'Problem loading page' may indicate a failed deployment, takedown, or deliberate evasion tactic to avoid detection during active campaigns. Mitigation steps for this specific threat type include immediate blacklisting of the domain and its associated IP (163.61.188.9) across network security controls, including firewalls, DNS filters, and email gateways. Organizations should deploy indicators of compromise (IOCs) such as the domain, IP, and registrar details (Global Domain Group LLC) into security information and event management (SIEM) systems to detect potential lateral movement or data exfiltration attempts. End users should be educated on recognizing fake trading platforms, particularly those using urgent calls-to-action (e.g., limited-time offers, account verification demands) or spoofed branding. Multi-factor authentication (MFA) should be enforced for all financial and cryptocurrency accounts to mitigate credential theft risks. Incident responders should monitor for unauthorized access attempts originating from the identified infrastructure, particularly in environments where trading or investment-related services are accessed.
Istantanea delle prove inviate
- Inviato
- Voci del registro
- 1
- ID del caso
PD-20260608-1E0327- Titolo della pagina acquisita
- Problem loading page
- Artefatto PDF
- Prova in PDF
Base giuridica
Testo completo delle prove
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (Unknown):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 13/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Cronologia del rilevamento
-
VirusTotal
6 → 10
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, nomi TLS e date
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologie
10 tecnologie identificate con alta affidabilità
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of presapexmarkets.com · checked Jun 26, 2026
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo