fincoinax[.]com
“Buy/Sell Bitcoin, Ether and Altcoins | Cryptocurrency Exchange | Fincoinax.com”
证据摘要
fincoinax.com was registered on February 21, 2026 and is currently taken offline. The domain resolves to the IP address 104.21.31.111, which belongs to Cloudflare, Inc. (ASN 13335) and is geolocated in the United States. The TLS certificate presented by the host is identified as WE1, indicating a standard Cloudflare‑issued certificate. The page title retrieved during the last crawl reads "Buy/Sell Bitcoin, Ether and Altcoins | Cryptocurrency Exchange | Fincoinax.com", suggesting a cryptocurrency exchange façade. The site is listed as impersonating the Avalanche brand and is categorized as a crypto‑scam in the intelligence feed.
VirusTotal records show that one out of ninety‑three scanning engines flagged the domain, providing a single detection vector. Independent reputation services assign extremely low trust scores: Gridinsoft reports a score of 1 out of 100 and Scamadviser also rates the domain at 1 out of 100. The domain appears on a single security blocklist and is actively blocked by the PhishDestroy feed. No additional public blocklists or safe‑browsing entries were observed.
The limited evidence indicates a short‑lived infrastructure built on a Cloudflare front end, likely intended to lure victims into a cryptocurrency transaction flow that pretends to be affiliated with Avalanche. Because the site is offline, active harvesting of credentials is uncertain, but the presence of a brand‑impersonation tag and the low reputation scores suggest a high probability of malicious intent. Defenders should continue to block the domain at network perimeter and DNS filtering layers, monitor the associated IP address for any re‑use, and flag any outbound connections to Cloudflare nodes that resolve to the same address. Researchers may also submit the domain to additional sandbox services to enrich detection signatures, and threat‑intel sharing platforms should be updated with the observed indicators.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
取证情报
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控