p2pexchange-market[.]com[.]exchange-trademarket[.]com
“Index of /”
p2pexchange-market.com.exchange-trademarket.com — 隐形 · 可达. 品牌冒充:MEXC; 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 13/91 (BitDefender, CRDF, CyRadar, ESET, Forcepoint ThreatSeeker); cloaking observed; PhishDestroy score 100/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of p2pexchange-market.com.exchange-trademarket.com shows that the domain was registered on 21 February 2026 and is currently taken offline. The site presents the generic directory index page titled “Index of /”, which offers no legitimate content and is a common placeholder used by malicious operators. The domain resolves to IP 198.12.80.250, an address owned by AS36352 (HostPapa) located in the United States. The hosting provider is a shared‑hosting service, which frequently hosts abuse‑related sites. SSL inspection reports a certificate identified as “R10”, indicating a low‑trust or self‑signed certificate.
The Gridinsoft trust score of 0 / 100 further confirms the lack of reputation. The domain appears on one security blocklist and is listed by PhishDestroy, reinforcing its classification as malicious. VirusTotal scans flagged the domain by ten of ninety‑three AV engines, providing independent detection of malicious activity. The intelligence labels the operation as a “Crypto Scam” that impersonates the cryptocurrency exchange MEXC, matching the brand target field.
The elevated risk rating reflects the combination of brand impersonation, low trust scores, and multiple vendor detections. While the site is offline, the infrastructure—particularly the shared hosting IP and the weak SSL certificate—remains reusable for future campaigns. Defenders should continue to block the domain at perimeter filters, monitor the hosting IP for new registrations, and add the domain to internal blacklist feeds. Additional verification of any future DNS resolution to the same IP should trigger alerts, and any email or web traffic referencing the MEXC brand from this host should be treated as suspicious.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。