mdex-m-dex[.]com
“www.www.mdex-m-dex.com”
Kanıt özeti
The domain mdex-m-dex.com was registered on February 21, 2026 through NiceNIC International Group Co., Limited and is currently hosted on Cloudflare infrastructure. Its authoritative nameservers are audrey.ns.cloudflare.com and augustus.ns.cloudflare.com, and DNS resolution points to the IP address 104.21.62.52, which is listed as a Cloudflare, Inc. node in the United States (CA). The web service presents an HTTP 302 response and advertises the page title “www.www.mdex-m-dex.com”.
Automated analysis classifies the site as a social‑media phishing operation, and VirusTotal records indicate that 2 of 93 security vendors have flagged the domain as malicious. Additional security telemetry shows a Gridinsoft trust score of 0 out of 100 and that the domain appears on a single blocklist, where it is listed by PhishDestroy as still active. The observed technology stack includes Cloudflare and HTTP/3, consistent with the underlying CDN provider.
Evidence confirms that the domain is actively serving malicious content, but the specific phishing payload, target brand, and credential‑harvesting page details have not been publicly disclosed. Defenders should prioritize adding mdex-m-dex.com to URL filtering and DNS sinkhole rules, enforce strict outbound traffic monitoring for connections to the 104.21.62.52 address, and consider sharing the indicator with threat‑sharing communities. Continuous re‑evaluation is advised, as the short registration age and low detection count suggest the infrastructure could evolve or be repurposed for additional campaigns.
Data Coverage
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 11.08.2026
Kaydedilmiş sonuç kanıtı
Sonuç ve kaldırma ilişkilendirmesi
- Sonuç
redirected- Erişilebilirlik
reachable_redirect- Neden
http_redirect- Güven
- 80%
- İlk gözlem
- Son gözlem
Kanıt SHA-256 538fa1ac9b97
Tespit zaman çizelgesi
-
Erişilebilirlik
İlk kayıtlı değer: Bilinmiyor
993d00c35140 -
Erişilebilirlik
Bilinmiyor → Yönlendirildi
ee5b2f882f24 -
Erişilebilirlik
Yönlendirildi → Bilinmiyor
b092c7abb3a0 -
Erişilebilirlik
Bilinmiyor → Yönlendirildi
2e4799fae851 -
Erişilebilirlik
Yönlendirildi → Bilinmiyor
7cebcfd4071c -
Erişilebilirlik
Bilinmiyor → Yönlendirildi
a02dfa826ea0 -
Erişilebilirlik
Yönlendirildi → Bilinmiyor
ca255b61650a -
Erişilebilirlik
Bilinmiyor → Yönlendirildi
baf33dae1bc2 -
Erişilebilirlik
Yönlendirildi → Bilinmiyor
d8f7d37d7f95 -
Erişilebilirlik
Bilinmiyor → Yönlendirildi
538fa1ac9b97
Topluluk raporları
1 topluluk üyesi tarafından bildirildi; ilk görülme 13.02.2026
- Kayıtlı raporlar
- 1
- Bildirilen benzersiz URL’ler
- 1
Topluluk istihbaratı
1 topluluk raporu
KategoriPHISHING
Detection Summary The Anti-Phishing Volunteers & Associates Security Incident Response System has flagged this as a domain threat, classified as phishing attack against several brands. Threat detected at 2025-10-22T22:39:48.418Z. Targeted Brands MDEX Dodo Exchange
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analizi
Site Yapılandırma Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin