ex-globalmarkets-pakistan[.]com
“Exness Trading Platform in Pakistan”
ex-globalmarkets-pakistan.com — Непроверенный. Олицетворение бренда: Across; Тип мошенничества: Brand Impersonation. Сводка доказательств: VirusTotal 3/93 (alphaMountain.ai, Fortinet, Gridinsoft); Spamhaus DBL_PHISH; PhishDestroy score 65/100. Регистратор: NiceNIC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, ex-globalmarkets-pakistan.com, poses a direct threat as an investment scam impersonating the Exness Trading Platform, specifically targeting users in Pakistan. The site falsely presents itself as a legitimate trading platform under the title 'Exness Trading Platform in Pakistan,' aiming to deceive victims into depositing funds or disclosing financial credentials. Such brand impersonation schemes often lead to unauthorized transactions, account takeovers, or complete financial loss for affected individuals. The infrastructure is designed to exploit trust in established financial brands, leveraging realistic web design and localized content to enhance credibility. Analysis of the domain reveals multiple technical indicators confirming its malicious nature. The domain was registered on February 21, 2026, through NiceNIC International Group Co., Limited, a registrar frequently associated with suspicious registrations. It resolves to the IP address 188.114.97.3 and is currently flagged by 3 out of 95 security vendors on VirusTotal, with an additional appearance on one security blocklist. The domain has since been taken offline, though its prior activity suggests a coordinated effort to evade detection while maximizing victim engagement. The use of a hyphenated, brand-mimicking domain name further indicates an intent to confuse users searching for legitimate trading platforms. Users who visited ex-globalmarkets-pakistan.com should take immediate action to mitigate potential risks. First, any financial credentials or personal information entered on the site should be considered compromised and must be changed across all platforms. Affected individuals should monitor their bank and investment accounts for unauthorized transactions and report suspicious activity to their financial institutions. If funds were transferred, victims should file a report with local cybercrime authorities and provide all relevant details, including transaction records and communication logs. Additionally, running a full antivirus scan on any device used to access the site is recommended to detect potential malware or backdoors installed during the visit.
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-20 02:59:45 UTC
Анализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of ex-globalmarkets-pakistan.com · checked Jun 26, 2026
Доказательства и внешние отчеты
PD-20260217-4DC410 Recipient: abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание