Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is complaint@gname.com.
The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
nextepochmarket[.]cc
“Nexte: One-Stop Global Investment Platform | Forex | Commodities | Stocks | Indices | Cryptocurrenc…”
nextepochmarket.cc — 未验证. 诈骗类型:Investment Scam. 证据摘要: VirusTotal 13/91 (alphaMountain.ai, BitDefender, CRDF, CyRadar, Forcepoint ThreatSeeker); URLQuery 1 alert; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 100/100. 注册商: Gname.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of nextepochmarket.cc indicates an active high-risk investment scam domain registered on March 28, 2026, through Gname.com Pte. Ltd. The domain currently resolves to 188.114.97.3, hosted on AS13335 (Cloudflare, Inc.) in the United States, with Cloudflare nameservers ruben.ns.cloudflare.com and serenity.ns.cloudflare.com. The site presents itself as a global trading platform offering forex, commodities, stocks, indices, and cryptocurrencies, as evidenced by its page title: 'Nexte: One-Stop Global Investment Platform | Forex | Commodities | Stocks | Indices | Cryptocurrencies | Gold | Oil.' This aligns with the classified scam type of an investment scam. Security vendors have flagged the domain, with 4 out of 91 detecting it as malicious on VirusTotal. It appears on three security blocklists and is blocked by PhishDestroy, MetaMask, and SEAL. AlienVault OTX records the domain in two threat intelligence pulses, further corroborating its malicious classification. The SSL certificate is issued by Let's Encrypt, a common choice for both legitimate and malicious sites, providing no definitive indication of intent. Infrastructure analysis reveals the use of Cloudflare, which is frequently employed to obscure hosting details and enhance resilience against takedowns. The domain's Gridinsoft trust score of 0/100 reflects its confirmed malicious status. While the exact content and functionality of the site remain unanalyzed, the combination of registration details, detection by security vendors, and presence on multiple blocklists strongly suggests it is part of an ongoing phishing campaign targeting individuals seeking investment opportunities. Defenders should prioritize blocking the domain at the DNS and network level, particularly in environments where financial or cryptocurrency-related activities occur. Monitoring for related domains registered through the same registrar or resolving to the same IP may help identify additional threats.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | nextepochmarket.cc |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
存档证据
证据与外部报告
PD-20260623-3D600A Recipient: complaint@gname.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。