htx[.]co[.]zw
“HTX | Leading Crypto Exchange for BTC, ETH, XRP, and 600+ Altcoins”
htx.co.zw — Não verificado. Representação da marca: HTX; Tipo de golpe: Brand Impersonation. Resumo das evidências: VirusTotal 2/93 (Gridinsoft, SOCRadar); PhishDestroy score 56/100.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
The domain htx.co.zw was registered on February 21, 2026 and is presently taken offline. DNS resolution points to the IP address 43.132.64.159, which geolocates to Great Britain. The authoritative nameservers are hosted on AWS infrastructure (ns-151.awsdns-18.com, ns-992.awsdns-60.net, ns-1510.awsdns-60.org, and an additional AWS nameserver). No SSL/TLS certificate is presented, indicating that the site operated without encrypted transport.
The page title retrieved during the brief observation period reads "HTX | Leading Crypto Exchange for BTC, ETH, XRP, and 600+ Altcoins," directly referencing the HTX brand and suggesting a crypto‑exchange impersonation. The domain appears on a single security blocklist and has been specifically blocked by PhishDestroy. VirusTotal analysis shows that 2 of 93 scanned security vendors flagged the domain, confirming that at least a minority of scanners identified malicious characteristics. The evidence points to a brand‑impersonation campaign targeting users of the legitimate HTX cryptocurrency platform.
Uncertainty remains regarding the exact content served before takedown, the presence of any credential‑stealing forms, and whether additional infrastructure (such as command‑and‑control servers) is associated with the IP address. Defenders should continue to block the domain and its resolved IP at perimeter defenses, add the observed nameservers to threat‑intel feeds, and monitor for any re‑registration attempts or similar domains that reuse the same branding in their page titles. Ongoing vigilance is recommended, especially for organizations that allow HTX‑related traffic, to prevent potential credential harvesting or fraudulent transactions.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo