swap[.]steamexchange[.]io
“Rails Network Swap | Rails Network® Swap”
swap.steamexchange.io — Неперевірений. Уособлення бренду: MEXC; Тип шахрайства: Wallet/seed Phishing. Зведення доказів: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Реєстратор: GoDaddy.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain swap.steamexchange.io is a phishing site that engages in brand impersonation, specifically targeting the MEXC brand. The site is currently taken offline, but it previously posed an elevated risk to users as a wallet_connect_phish scam. When active, the page title was 'Rails Network Swap | Rails Network® Swap', which could mislead users into thinking they were interacting with a legitimate service.
swap.steamexchange.io was registered through GoDaddy.com, LLC on February 14, 2022, and resolves to the IP address 172.67.172.139, located in the US under AS13335 Cloudflare, Inc. The domain has been flagged by 1 of 95 VirusTotal vendors, including SOCRadar, and appears on 3 security blocklists: PhishDestroy, MetaMask, and SEAL. Despite these detections, Google Safe Browsing has not flagged the domain. The site uses technologies such as React, Netlify, HSTS, Google Analytics, Cloudflare Browser Insights, Cloudflare, and HTTP/3. The nameservers for the domain are jaziel.ns.cloudflare.com and keira.ns.cloudflare.com.
If a user has interacted with swap.steamexchange.io, they should immediately revoke any token approvals and move their funds to a new, secure wallet to mitigate the risk of a crypto drainer. For those who may have entered login credentials, it is crucial to change passwords and enable two-factor authentication on all affected accounts. Users should also monitor their accounts for any signs of unauthorized activity or fraud. To report this phishing domain, individuals can submit it to PhishTank, Google Safe Browsing, and other reputable reporting platforms.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 7 identified
JavaScript library for building user interfaces with component-based architecture.
Platform for deploying and hosting modern web applications.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web analytics service tracking website traffic and user behavior.
marketingplatform.google.comPerformance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of swap.steamexchange.io · checked Mar 17, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога