swap[.]steamexchange[.]io
“Rails Network Swap | Rails Network® Swap”
swap.steamexchange.io — Non verificato. Simulazione del marchio: MEXC; Tipo di truffa: Wallet/seed Phishing. Riepilogo delle prove: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Registrar: GoDaddy.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
The domain swap.steamexchange.io is a phishing site that engages in brand impersonation, specifically targeting the MEXC brand. The site is currently taken offline, but it previously posed an elevated risk to users as a wallet_connect_phish scam. When active, the page title was 'Rails Network Swap | Rails Network® Swap', which could mislead users into thinking they were interacting with a legitimate service.
swap.steamexchange.io was registered through GoDaddy.com, LLC on February 14, 2022, and resolves to the IP address 172.67.172.139, located in the US under AS13335 Cloudflare, Inc. The domain has been flagged by 1 of 95 VirusTotal vendors, including SOCRadar, and appears on 3 security blocklists: PhishDestroy, MetaMask, and SEAL. Despite these detections, Google Safe Browsing has not flagged the domain. The site uses technologies such as React, Netlify, HSTS, Google Analytics, Cloudflare Browser Insights, Cloudflare, and HTTP/3. The nameservers for the domain are jaziel.ns.cloudflare.com and keira.ns.cloudflare.com.
If a user has interacted with swap.steamexchange.io, they should immediately revoke any token approvals and move their funds to a new, secure wallet to mitigate the risk of a crypto drainer. For those who may have entered login credentials, it is crucial to change passwords and enable two-factor authentication on all affected accounts. Users should also monitor their accounts for any signs of unauthorized activity or fraud. To report this phishing domain, individuals can submit it to PhishTank, Google Safe Browsing, and other reputable reporting platforms.
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Tecnologie · 7 identified
JavaScript library for building user interfaces with component-based architecture.
Platform for deploying and hosting modern web applications.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web analytics service tracking website traffic and user behavior.
marketingplatform.google.comPerformance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of swap.steamexchange.io · checked Mar 17, 2026
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo