gxmqq.com
gxmqq.com — Hoạt động được biết đến lần cuối (HTTP 200). Tóm tắt bằng chứng: VirusTotal 5/89 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Kaspersky, SOCRadar); PhishDestroy score 88/100. Nhà đăng ký: Realtime.
Phân tích chi tiết của PhishDestroy AI bên dưới được giữ bằng tiếng Anh để bảo toàn hồ sơ pháp chứng gốc.
Tóm tắt bằng chứng
PhishDestroy first observed gxmqq.com on Sep 7, 2026. Current evidence score: 88/100 (critical).
One source contains a positive finding: VirusTotal. VirusTotal recorded 5 detections among 89 engines: alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Kaspersky, SOCRadar on Sep 21, 2026 at 02:04 UTC. Non-positive and contextual checks: AlienVault OTX listed 4 community pulse references (not vendor detections) on Sep 17, 2026 at 18:25 UTC. The separate external-blocklist snapshot contained no matches on Sep 21, 2026 at 02:20 UTC. Google Safe Browsing returned no flag on Sep 20, 2026 at 04:00 UTC.
HTTP 200 was recorded on Sep 21, 2026 at 01:34 UTC. Registration records for the domain list Realtime Register B.V. as the registrar and Jul 18, 2026 as the creation date. At collection time, the hostname resolved to 172.67.176.111 on AS13335 (Cloudflare, Inc.). The IP and ASN identify shared Cloudflare edge infrastructure; the origin server is not established by this address. TLS metadata lists Google Trust Services / WE1 as the certificate issuer with validity through Oct 27, 2026; checked Sep 15, 2026 at 19:02 UTC.
Neither a page title nor a landing-page capture is stored. Only one source contains a positive finding; no second positive source is stored. The stored fields do not identify an impersonated brand or victim interaction.
Forensic History & Detection Timeline
-
VirusTotal Detections Update Sep 17, 2026 · 13:16 UTCVirusTotal scanner detections updated from 2 to 1. Added scanner alerts: alphaMountain.ai. Resolved alerts: Forcepoint ThreatSeeker, SOCRadar.
-
Threat First Observed Sep 15, 2026 · 20:23 UTCDomain ingestion complete. Initial state is marked as alive.
Pipeline ứng phó với các mối đe dọa
Trạng thái trong danh sách chặn công khai
Evasion analysis
Cloaking & traffic-distribution check
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
- Stored cloaking flag
- Not yet scanned
- Last cloaking scan
- Server header seen by scanner
cloudflare
Scanner note: alive_content: raw=ok; http=200; via=https_proxy; server=cloudflare
Thông tin về tên miền
Chi tiết kỹ thuậtDNS, SAN trong SSL, dấu thời gian
Công nghệ · 3 identified
Phân tích của VirusTotal
Thông tin cộng đồng
1 báo cáo từ cộng đồng
Danh mụcOTHER_INVESTMENT_SCAM
1. Summary A victim was induced by a fraudulent "investment/trading" platform to buy USDT and transfer it to an address controlled by the operation. The funds were moved, on-chain, through a single-use burner address into a high-volume automated consolidation wallet, then into a
Bằng chứng và các báo cáo bên ngoài
“1. Summary A victim was induced by a fraudulent "investment/trading" platform to buy USDT and transfer it to an address controlled by the operation. The funds were moved, on-chain, through a single-use burner address into a high-volume automated consolidation wallet, then into a large secondary consolidator (4,622 transfers), which cashes out to KYC-verified deposit addresses at Binance, Bitget, and Coinmania. The exchange deposit addresses at the end of this chain are the actionable endpoints”
Bạn có bị ảnh hưởng bởi trang web này không?
Nếu bạn đã nhập thông tin xác thực tài khoản, thông tin cá nhân hoặc thông tin thanh toán hoặc đã tải xuống tệp từ miền này, hãy hành động ngay lập tức. Dưới đây là các nguồn lực giúp bạn báo cáo vụ việc và bảo vệ chính mình.
Hãy báo cáo với chính quyền địa phương
Chọn quốc gia của bạn để nhận liên hệ tội phạm mạng chính thức hoặc soạn thảo đơn khiếu nại →.
Kiểm tra bất kỳ tên miền nào
Phân tích mối đe dọa bằng cách sử dụng danh sách chặn được lưu trữ, WHOIS, DNS và bằng chứng quét công khai
Quét ngayBáo cáo lừa đảo qua email
Hãy gửi các tên miền đáng ngờ đến cơ sở dữ liệu mối đe dọa của chúng tôi — để bảo vệ cộng đồng
Báo cáoDòng tin tức về các mối đe dọa thời gian thực
Các báo cáo lừa đảo gần đây và những thay đổi về tính khả dụng được quan sát thấy
Theo dõiLuôn cập nhật thông tin, luôn an toàn
Theo dõi các mối đe dọa đang diễn ra hoặc phản đối danh sách này nếu bạn cho rằng đây là kết quả báo động sai