biqanex[.]com
“Buy & Sell Bitcoin, Ethereum | Cryptocurrency Exchange | Biqanex.com”
Observação armazenada
Contraste de títulos observado
Resumo das evidências
Biqanex.com is an active phishing domain that targets cryptocurrency enthusiasts by impersonating Ethereum. This fake exchange site uses the guise of a legitimate platform to deceive users into divulging sensitive information. PhishDestroy identified this threat shortly after its domain creation on June 16, 2026, with the first detection on June 20, 2026. The site is currently flagged by 1 out of 91 vendors on VirusTotal and is listed on 1 public blocklist, including PhishDestroy's own.
The domain is registered with NICENIC INTERNATIONAL GROUP CO., LIMITED and hosted on an IP address managed by Cloudflare, Inc., located in the United States. The SSL certificate is issued by Google Trust Services, which might give a false sense of security to potential victims. The page title suggests a legitimate cryptocurrency exchange, offering services to buy and sell Bitcoin and Ethereum, which aligns with the impersonated brand.
Despite the low detection rate on VirusTotal, the platform risk score is notably high at 81/100, indicating a significant threat level. The phishing operation exploits the time gap between domain registration and widespread detection by antivirus vendors. This early detection by PhishDestroy highlights the importance of proactive threat intelligence in identifying fresh threats before they propagate widely.
The use of a reputable SSL issuer and hosting provider may help the site appear legitimate to unsuspecting users. However, the presence on a public blocklist and the specific targeting of Ethereum users underscore the site's malicious intent. This case exemplifies the ongoing threat posed by phishing domains that leverage cryptocurrency's popularity to lure victims into scams.
Data Coverage
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 12/08/2026
10 fontes externas monitoradas Sem correspondência
Evidência do resultado armazenada
Resultado e atribuição da remoção
- Resultado
live_content- Disponibilidade
content_live- Causa
content_served- Confiança
- 90%
- Primeira observação
- Observação mais recente
SHA-256 da evidência 53418547f25b
Linha do tempo de detecção
-
Disponibilidade
Primeiro valor armazenado: Desconhecido
993d00c35140 -
Disponibilidade
Desconhecido → Conteúdo ativo
dd68ea52b254 -
Disponibilidade
Conteúdo ativo → Desconhecido
2da52bbb55fe -
Disponibilidade
Desconhecido → Conteúdo ativo
6b442b5f7a89 -
Disponibilidade
Conteúdo ativo → Desconhecido
7cebcfd4071c -
Disponibilidade
Desconhecido → Conteúdo ativo
4ed18f561710 -
Disponibilidade
Conteúdo ativo → Desconhecido
ca255b61650a -
Disponibilidade
Desconhecido → Conteúdo ativo
a4bd460fbf90 -
Disponibilidade
Conteúdo ativo → Desconhecido
d8f7d37d7f95 -
Disponibilidade
Desconhecido → Conteúdo ativo
6324a133503e
Mostrar tudo (2)
-
Disponibilidade
Conteúdo ativo → Desconhecido
afa49a2b04dd -
Disponibilidade
Desconhecido → Conteúdo ativo
53418547f25b
Denúncias da comunidade
Denunciado por 0 membro da comunidade; visto pela primeira vez em 20/06/2026
- URLs únicas denunciadas
- 1
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, nomes TLS e datas
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologias
5 tecnologias identificadas com alta confiança
Análise do VirusTotal
Domínios semelhantes
52 domínios semelhantes armazenados
Mostrar tudo (40)
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo