fxnovus[.]co
“403forbidden - FXNovus”
Збережене спостереження
Зафіксована відмінність заголовків
Зведення доказів
Analysis of the domain fxnovus.co indicates it was registered on February 21, 2026, and has been flagged as a generic phishing site targeting users of the FXNovus trading platform. As of July 24, 2026, the domain resolves to the IP address 172.66.40.90, hosted on Cloudflare's network (AS13335) in the United States. The domain's nameservers are configured as destiny.ns.cloudflare.com and chris.ns.cloudflare.com, which is consistent with Cloudflare's infrastructure. The SSL certificate is issued by Google Trust Services (WE1), a common certificate authority for both legitimate and malicious sites. The domain is currently offline, returning a 403 Forbidden HTTP status with the page title '403forbidden - FXNovus,' which explicitly references the FXNovus brand.
This suggests the site was designed to impersonate FXNovus, though the exact content and functionality of the phishing pages remain unconfirmed due to its offline status. Technology detection tools identified WordPress, MySQL, PHP, Yoast SEO, Amazon Web Services, Zendesk, reCAPTCHA, and OneSignal, indicating a relatively sophisticated setup often associated with credential harvesting or fraudulent financial platforms. The domain appears on one security blocklist and is blocked by PhishDestroy. VirusTotal reports that one of ninety-three security vendors flags fxnovus.co as malicious.
While this detection count is low, it aligns with the domain's recent registration and offline status, which may limit visibility to security vendors. Defenders should treat this domain as a confirmed phishing threat targeting FXNovus users, particularly given the explicit brand reference in the page title. Network-level blocking of 172.66.40.90 and monitoring for related domains using similar naming conventions or Cloudflare hosting is recommended. Further investigation into the domain's historical content, if recoverable, could clarify the specific phishing mechanisms employed.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 12.08.2026
Хронологія виявлення
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of fxnovus.co · checked Mar 2, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога