chainex[.]global
“ChainEx - Trading Platform”
PhishDestroy identifies chainex.global as an active crypto drainer campaign under investigation. The domain poses as a cryptocurrency exchange platform, specifically targeting users through deceptive withdrawal or transaction pages designed to siphon funds. As of the latest intelligence, the threat remains active with no confirmed takedowns or remediation efforts reported. chainex.global was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED on March 31, 2026. The domain resolves to IP address 188.114.96.3 and utilizes a legitimate SSL certificate issued by Let's Encrypt. VirusTotal currently shows 0 detections out of 95 vendors, indicating it is not yet flagged by mainstream security tools. The domain has no recorded presence on major blocklists, and its trust scores remain unverified due to its recent creation. These technical indicators suggest an emerging threat with low immediate detection but high potential for exploitation given its impersonation of a cryptocurrency service. This domain is currently active and represents a significant risk to cryptocurrency users. PhishDestroy recommends immediate avoidance and verification of chainex.global through its threat intelligence platform. Users who have engaged with this domain should revoke any connected wallet permissions and monitor transactions for unauthorized activity. Security teams are advised to block the domain at the network level and report indicators to relevant threat intelligence feeds. Further monitoring is required to assess the full scope of this campaign and identify additional infrastructure associated with the threat actor.
Gönderilen rapor kaydı
Gönderilen kanıt anlık görüntüsü
- Gönderildi
- Kayıt defteri kayıtları
- 1
- Vaka kimliği
PD-20260404-7EB4D0- Yakalanan sayfa başlığı
- ChainEx - Trading Platform
- PDF belgesi
- PDF kanıtı
Kanıtın tam metni
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
Ağ Güvenliği İstihbaratı Registrar context
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 kaynak · 10.08.2026 tarihinde eşitlendi
Tespit zaman çizelgesi
Kaydedilmiş gözlemler kronolojik sıradadır.
-
Erişilebilirlik
Erişilebilirlik: ilk kez dns_inactive olarak gözlemlendi
f93a11f87e4d -
Erişilebilirlik
Erişilebilirlik: dns_inactive → unknown
e8a15cc8b88b -
Erişilebilirlik
Erişilebilirlik: unknown → dns_inactive
4c2d3e82bc85 -
Erişilebilirlik
Erişilebilirlik: dns_inactive → held
fbf30a7e6f68 -
Erişilebilirlik
Erişilebilirlik: held → dns_inactive
f52d526b76a1 -
Erişilebilirlik
Erişilebilirlik: dns_inactive → unknown
b3a90736b46f -
Erişilebilirlik
Erişilebilirlik: unknown → held
83c3f4f196ba -
Erişilebilirlik
Erişilebilirlik: held → unknown
fd8d803a46ba -
Erişilebilirlik
Erişilebilirlik: unknown → dns_inactive
6dfe9145995c -
Erişilebilirlik
Erişilebilirlik: dns_inactive → held
ddcac3134c72
Tümünü göster (6)
-
Erişilebilirlik
Erişilebilirlik: held → dns_inactive
641ed81dc4d5 -
Erişilebilirlik
Erişilebilirlik: dns_inactive → unknown
079fa1b49c1d -
Erişilebilirlik
Erişilebilirlik: unknown → held
b6d1fec5119a -
Erişilebilirlik
Erişilebilirlik: held → unknown
7c09a1f21e20 -
Erişilebilirlik
Erişilebilirlik: unknown → dns_inactive
d0b7046e8c2f -
Erişilebilirlik
Erişilebilirlik: dns_inactive → held
e5fc444ba1db
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Adli İstihbarat
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of chainex.global · checked Apr 4, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin