footexfi[.]com
Проверка домена footexfi.com на фишинг и безопасность
“Footex - Football Finance Exchange”
footexfi.com — Последний известный активный (HTTP 200). Тип мошенничества: Fake Exchange. Сводка доказательств: VirusTotal 2/91 (CRDF, Gridinsoft); URLQuery 1 alert; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 78/100. Регистратор: Hostinger.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
PhishDestroy first observed footexfi.com on Mar 2, 2026. The captured page title is “Footex - Football Finance Exchange”. Stored page analysis classifies the content as fake exchange. Current evidence score: 78/100 (critical).
Positive findings are stored from 4 sources: VirusTotal, MetaMask, SEAL, and URLQuery. VirusTotal recorded 2 detections among 91 engines: CRDF, Gridinsoft on Jul 28, 2026 at 02:23 UTC. MetaMask and SEAL listed the hostname in the separate external-blocklist snapshot on Aug 8, 2026 at 06:20 UTC. URLQuery recorded 1 threat-system alert on Mar 2, 2026 at 13:31 UTC. Non-positive and contextual checks: On Mar 2, 2026 at 15:22 UTC, Google Safe Browsing returned no flag; PhishStats returned no feed match. URLScan completed without a malicious verdict (score 0) on Jul 29, 2026 at 02:49 UTC.
HTTP 200 was recorded on Aug 7, 2026 at 22:14 UTC. Registration records for the domain list HOSTINGER operations, UAB as the registrar and Mar 2, 2026 as the creation date. Registration and first observation occurred on the same UTC date. At collection time, the hostname resolved to 157.173.123.56 on AS51167 (Contabo GmbH). The IP and ASN identify shared CDN edge infrastructure; the origin server is not established by this address. The stored server header is nginx/1.18.0 (Ubuntu). DOM analysis on Jul 9, 2026 at 02:21 UTC returned 78/100. The evidence archive retains 3 visual captures from PhishDestroy, URLScan, and URLQuery. TLS metadata lists R13 as the certificate issuer with validity through Jun 2, 2026; checked Mar 15, 2026 at 05:53 UTC.
The content indicators and 4 positive source findings support the current fake exchange classification.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | footexfi.com |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 6 identified
JavaScript runtime built on Chrome V8 engine for server-side development.
Progressive JavaScript framework for building user interfaces.
Hybrid Vue framework for server-side rendering and static sites.
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание