Güvenlik raporuna geç
⚠️
Bu alan adı, zararlı olarak işaretlenmiştir
Güvenlik motorları bir algılama bildiriyor: 5. Çok dikkatli olun — kimlik bilgilerini veya kişisel bilgileri girmeyin.
Etki alanı güvenliği ve tehdit istihbaratı

vexskins[.]com

“VEXSKINS.COM — Profitable CS:GO/CS2 Skin Exchange”

Tehdit kararı Kritik 80/100 kanıt puanı
Kullanılabilirlik Bilinen son aktif En son saklanan erişilebilirlik gözlemi
VirusTotal algılamaları: 5/91 Spamhaus DBL: DBL_SPAM Dolandırıcılık türü: Fake Exchange Genç alan adı: 17 günlük Bilinen son aktif
28.07.2026 CDN

Kanıt özeti

KRİTİK
Evidence score
80/100

Analysis of vexskins.com indicates an active phishing infrastructure registered on July 24, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED. The domain resolves to IP address 104.21.49.131 and uses Cloudflare nameservers (cash.ns.cloudflare.com and susan.ns.cloudflare.com), a common configuration observed in phishing campaigns to obscure hosting origins. As of July 28, 2026, the domain appears on one security blocklist, specifically PhishDestroy, which suggests prior detection of malicious activity, though the exact nature of the phishing content remains unconfirmed. VirusTotal scans by 91 vendors report no detections at this time, though this absence does not confirm safety and may reflect delayed or incomplete coverage by detection engines.

Defenders should note that the domain's recent registration (four days old at the time of reporting) aligns with patterns of short-lived phishing sites designed to evade long-term scrutiny. The use of Cloudflare nameservers further complicates attribution, as the hosting provider's proxy services mask the true origin of the infrastructure. No brand impersonation or specific scam type has been identified in the available data, classifying this as a generic phishing domain until further analysis is conducted. The lack of additional blocklist inclusions or public threat intelligence references limits contextual understanding, though the single blocklist entry warrants caution.

Recommended actions include monitoring the domain for changes in detection status, particularly on platforms like VirusTotal or URLScan, and cross-referencing with internal logs for connections to 104.21.49.131 or related Cloudflare IPs. Network-level blocking may be considered based on the PhishDestroy flag, though false positives should be ruled out if the domain is associated with legitimate traffic. Further investigation into SSL certificates, HTTP response headers, or historical DNS records may provide additional indicators of compromise.

VirusTotal
VirusTotal
5 det.
TLS sertifikası
Google Trust Services
Yaş
17d Very New!
Gözlemlenen durum
Bilinen son aktif HTTP 200
PhishDestroy
DestroyList
Listelenmiş

Data Coverage

VirusTotal 5 / 91 URLQuery kontrol edilmedi PhishStats kontrol edilmedi OTX no community references CF Radarı scan completed URLScan capture saklanan rapor URLScan verdict değerlendirme yok DNS engellemeleri kontrol edilmedi TLS valid certificate, 86d WHOIS 17d old Ekran görüntüsü 3 captures · 2 sources Yönlendirme zinciri araştırılmadı
Ağ Güvenliği İstihbaratıRegistrar context
Registrar context NiceNIC
Stored registration data identifies NICENIC INTERNATIONAL GROUP CO., LIMITED (IANA 3765) as the registrar. PhishDestroy maintains separate NiceNIC abuse-report research; registrar association is contextual and is not an independent detection for this domain.
NiceNIC Verdict Full Investigation

Tehdit Müdahale Pipeline

Keşif
Checks
Reports
Erişilebilirlik
12/14

Engelleme listesi kapsamı

10 izlenen harici kaynak · kayıtlı anlık görüntü 11.08.2026

10 izlenen harici kaynak Eşleşme yok

Kaydedilmiş sonuç kanıtı

Sonuç ve kaldırma ilişkilendirmesi

Sonuç
live_content
Erişilebilirlik
content_live
Neden
content_served
Güven
90%
İlk gözlem
Son gözlem

Kanıt SHA-256 dabfd4158608

Tespit zaman çizelgesi

  1. İlk kayıt

    İlk kayıtlı değer: Erişilebilir

  2. Erişilebilirlik

    İlk kayıtlı değer: Bilinmiyor

    993d00c35140
  3. Erişilebilirlik

    Bilinmiyor → Canlı içerik

    ac30da83bb10
  4. Erişilebilirlik

    Canlı içerik → Bilinmiyor

    e3569ebff458
  5. Erişilebilirlik

    Bilinmiyor → Canlı içerik

    6815b14b1030
  6. Erişilebilirlik

    Canlı içerik → Bilinmiyor

    7cebcfd4071c
  7. Erişilebilirlik

    Bilinmiyor → Canlı içerik

    499d39c44e03
  8. Erişilebilirlik

    Canlı içerik → Bilinmiyor

    ca255b61650a
  9. Erişilebilirlik

    Bilinmiyor → Canlı içerik

    c52134feb658
  10. Erişilebilirlik

    Canlı içerik → Bilinmiyor

    d8f7d37d7f95
Tümünü göster (1)
  1. Erişilebilirlik

    Bilinmiyor → Canlı içerik

    dabfd4158608

Topluluk raporları

0 topluluk üyesi tarafından bildirildi; ilk görülme 28.07.2026

Bildirilen benzersiz URL’ler
1

Kaydedilen görüntü

Sayfa başlığı
VEXSKINS.COM — Profitable CS:GO/CS2 Skin Exchange
TLS sertifikası
Valid transport encryption · Düzenleyen Google Trust Services · valid for 86 days

Etki Alanı Analizi

Alan adı
Sunucu / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden Edge-IP itibarı bu etki alanıyla ilişkilendirilmez.
Kayıt kuruluşu NiceNIC RU(RU) PhishDestroy Investigation
IP adresi 104.21.49.131 CDN
Coğrafi konumCA Toronto, CA
AS13335 · Cloudflare, Inc.
Kaynak IP, bir CDN proxy'sinin arkasına gizlenir. Uç adresine ilişkin Ters IP sonuçları ilgisiz kiracılar içerir; Kaynağı bulmak için pasif DNS veya sertifika şeffaflığı verileri gerekir.
KayıtOluşturuldu 24.07.2026 (17d · Very New!) Expires 24.07.2027
HTTP Durumu200
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
İlk Kez Tespit Edildi28.07.2026
Submitted URLhttps://vexskins.com/
Ad sunucularıcash.ns.cloudflare.comsusan.ns.cloudflare.com
TLS parmak izi
TLS gözlemi24.07.2026 tarihinden itibaren geçerli28.07.2026 tarihinde tarandı
Favicon Hash
ICANN OVERSIGHT

Akreditasyon ve RAA bağlamı

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Hiçbir şey otomatik olarak gönderilmez.

Teknolojiler

6 yüksek güvenli teknoloji belirlendi

Node.js Express Smartsupp jsDelivr Cloudflare HTTP/3
Cloudflare Radar
Bu Alan Adını Bildir Kanıt sunun ve başkalarını korumaya yardımcı olun

VirusTotal Analizi

5 / 91 güvenlik sağlayıcıları bu alanı işaretledi
View on VT
Last analyzed First positive detection Previous stored snapshot: 5 detections
alphaMountain.ai
CRDF
Fortinet
Gridinsoft
SOCRadar

Arşivlenmiş Kanıtlar

Wayback Machine Snapshot
Kanıt incelemesi için geçmişe ait bir anlık görüntü mevcuttur
View Archive
Site Performans Analizi

Google PageSpeed Insights — mobile performance audit of vexskins.com · checked Jul 28, 2026

56
Needs Work
Performance
FCP
4.8s
First Contentful Paint
LCP
8.36s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
15ms
Total Blocking Time
SI
13.06s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Stored Capture Evidence1 snapshot

Timestamped response metadata retained by the local collection pipeline. Each value below belongs to the displayed archive time.

Archived HTTP response HTTP 200
Requested URL: https://vexskins.com/
VEXSKINS.COM — Profitable CS:GO/CS2 Skin Exchange
Sell CS2 skins at the best prices among all platforms
Müdahale
HTTP 200
HTML body
40.3 KB
Compressed
9.1 KB
Links
27 internal · 0 external
Detected technologies
cloudflare
Selected response headers
Content-Type: text/html; charset=utf-8
Server: cloudflare
X-Powered-By: Express
CF-Cache-Status: DYNAMIC
Content-Encoding: gzip
HSTS: not observed DNSSEC: not observed WAF / firewall: observed Cloaking flag: not observed
Favicon fingerprint: 32ce26beaa1115e1bd80b6beb0f009a55f724969ef0ffd5703fbbc247e2ab4eb
Open Graph title: VEXSKINS.COM — Profitable CS:GO/CS2 Skin Exchange
Open Graph description: Sell CS2 skins at the best prices among all platforms
All stored response-header names (13)
DateContent-TypeTransfer-EncodingConnectionServerNelX-Powered-ByVaryReport-Tocf-cache-statusContent-EncodingCF-RAYalt-svc
Site Yapılandırma Analizi
Stored observations are retained with their original collection time.
robots.txt Present · HTTP 200
/admin /api/ /fake/
Sitemap 11 pages · HTTP 200

Bu Siteden Etkilendiniz mi?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.

Europol
AB ülkeniz için resmi raporlama kanalını bulun
National police directory
Kurtarma dolandırıcılarına dikkat edin! Suçlular, araştırmacı, avukat veya kurtarma görevlisi gibi davranarak mağdurlarla tekrar iletişime geçebilir. Peşin ücret ödemeyin veya kimlik bilgilerinizi paylaşmayın. Geri ödeme dolandırıcılığı hakkında daha fazla bilgi edinin →

Yerel Yetkililere Bildirin

resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.

97 ülke rehberi
Yapay zeka destekli taslak — olay ayrıntıları yapay zeka sağlayıcısı tarafından işlenir Kendiniz inceleyin ve gönderin

Herhangi Bir Alan Adını Kontrol Et

Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi

Şimdi Tara

Oltalama Olayını Bildir

Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun

Bildir

Canlı Tehdit Akışı

Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri

İzle

Gelişmelerden Haberdar Olun, Güvende Kalın

Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin

Canlı Tehdit Akışı Bu İlanı İtiraz Et

Harici araçlar

GridinsoftGridinsoft Güven puanı 10/100Kaynağı aç
ScamAdviserScamAdviser Güven puanı 80/100Durum: Likely SafeKaynağı aç
HTML · IFRAME

Bu Raporu Yerleştir

Bu tehdit bilgisini web sitenizde veya blogunuzda paylaşın

embed.html
<iframe
  src="https://phishdestroy.io/tr/embed/domain/vexskins.com"
  title="PhishDestroy threat report for vexskins.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Çok İçten Bir Teşekkür Mektubu

Hicivli taslak oluşturucu

Alıcı
Ücret bağlamı

Hicivli taslak. Ücret rakamları tahminidir; bu alan adına kesin olarak atfedildikleri iddia edilmez.