This domain is flagged as a high-risk generic phishing site, currently active as of the July 30, 2026 report date. Created on May 30, 2026, and registered through Gname.com Pte. Ltd., the domain uses nameservers a.share-dns.com, a1.share-dns.com, b.share-dns.net, and b1.share-dns.net, which are often associated with fast-flux or disposable hosting infrastructure. It resolves to IP address 83.229.124.116, though no specific ASN or country information is available in the known intelligence. The domain appears on one security blocklist, PhishDestroy, and VirusTotal data shows 3 out of 91 security vendors flagging this domain as malicious.
This detection rate, while low, indicates some recognition by the security community, though the majority of vendors have not yet classified it. No Safe Browsing, OTX, SSL certificate details, HTTP status, trust scores, page title, or brand target information are provided, meaning the exact content and nature of the phishing page remain unanalysed. Defenders should treat this domain as actively hostile and block all traffic to mexctrade.icu and its associated IP address at the network perimeter. Email gateways should quarantine any messages containing links to this domain.
Continuous monitoring is recommended, as the domain may change IPs or nameservers to evade detection. Given the generic threat classification, this site likely hosts a credential harvesting or data collection form, but without page content analysis, the specific target cannot be confirmed. Security teams should also review logs for any past connections to this domain or its IP, as it has been active for approximately two months since creation.