These are all shared web hosting sites under the same ip address 8.210.96.164. All of them seem to be under the XBEKEX domain name with slight variations. I did a reverse lookup on
https://whois.domaintools.com/ to find them. Most of the URL's seemed to be tied to their mobile version of the sites and code. One version of code for the mobile version and another version of code for the web-based platform. Domain tools list a total of 9 URL's tied to this ip address. The web-based platform also has 11 different url's as well according to domain tools. I will also list those as well to prevent others from being scammed as I have. I lost $284,000 on this scam by a scammer who approached me on latinamericancupid.com under the name Anna Xu. She claimed to be the owner of a clothing store in Hong Kong who got tips from her uncle about EOT. The mobile sites all include EOT which is considered a dead coin and cannot be traded anywhere else. The web-based sites all seem to include BOT (and a few of the mobile sites as well) which is another crypto rarely traded. The logins for each user appear to only be associated with the URL they originally registered to. I will also include the domain tools info. I would encourage anyone scammed by these sites to contact the abuse departments listed in the information. Hopefully if enough complain they will block those sites.
Sites I found under the 8.210.96.164 ip:
www.bxbkex.comwww.xbkex.combxbkex.com
cxbkex.com
exbkex.com
m.coinnmh.com
m.jxbkex.com
m.xbkex.com
m.fxbkex.com
m.sxbkex.com
Domain Name: BXBKEX.COM
Registry Domain ID: 2639529506_DOMAIN_COM-VRSN
Registrar WHOIS Server: whois.gname.com
Registrar URL:
https://www.gname.comUpdated Date: 2021-11-07T12:41:14Z
Creation Date: 2021-09-08T12:37:05Z
Registrar Registration Expiration Date: 2022-09-08T12:37:05Z
Registrar: Gname.com Pte. Ltd.
Registrar IANA ID: 1923
Reseller:
Registrar Abuse Contact Email:
Registrar Abuse Contact Phone: +65.31581931
Domain Status: clientTransferProhibited
https://icann.org/epp#clientTransferProhibitedRegistry Registrant ID: Redacted for privacy
Registrant Name: Redacted for privacy
Registrant Organization: Redacted for privacy
Registrant Street: Redacted for privacy
Registrant City: Redacted for privacy
Registrant State/Province: HONG KONG
Registrant Postal Code: Redacted for privacy
Registrant Country: HK,CN
Registrant Phone: Redacted for privacy
Registrant Fax: Redacted for privacy
Registrant Email:
https://rdap.gname.com/extra/contact?type=registrant&domain=BXBKEX.COMAdmin Name: Redacted for privacy
Admin Organization: Redacted for privacy
Admin Street: Redacted for privacy
Admin City: Redacted for privacy
Admin State/Province: Redacted for privacy
Admin Postal Code: Redacted for privacy
Admin Country: Redacted for privacy
Admin Phone: Redacted for privacy
Admin Fax: Redacted for privacy
Admin Email:
https://rdap.gname.com/extra/contact?type=admin&domain=BXBKEX.COMTech Name: Redacted for privacy
Tech Organization: Redacted for privacy
Tech Street: Redacted for privacy
Tech City: Redacted for privacy
Tech State/Province: Redacted for privacy
Tech Postal Code: Redacted for privacy
Tech Country: Redacted for privacy
Tech Phone: Redacted for privacy
Tech Fax: Redacted for privacy
Tech Email:
https://rdap.gname.com/extra/contact?type=technical&domain=BXBKEX.COMName Server: NS1.GNAME-DNS.COM
Name Server: NS2.GNAME-DNS.COM
DNSSEC: unsigned
URL of the ICANN Whois Inaccuracy Complaint Form:
https://www.icann.org/wicf/>>> Last update of whois database: 2021-11-07T12:41:14Z <<<
Web-based platforms and some mobile sites under the 47.242.75.181 ip:
www.coinnmh.comCOINNMC.com
COINNMB.com
COINNML.com
Coinnmh.com
Coinnmk.com
Coinnmf.com
Coinnmj.com
Coinnma.com
Coinnmm.com
Coinnmd.com
Coinnmg.com
NetRange: 47.235.0.0 - 47.246.255.255
CIDR: 47.240.0.0/14, 47.246.0.0/16, 47.244.0.0/15, 47.236.0.0/14, 47.235.0.0/16
NetName: AL-3
NetHandle: NET-47-235-0-0-1
Parent: NET47 (NET-47-0-0-0-0)
NetType: Direct Allocation
OriginAS:
Organization: Alibaba.com LLC (AL-3)
RegDate: 2016-04-15
Updated: 2017-04-26
Ref:
https://rdap.arin.net/registry/ip/47.235.0.0OrgName: Alibaba.com LLC
OrgId: AL-3
Address: 400 S El Camino Real, Suite 400
City: San Mateo
StateProv: CA
PostalCode: 94402
Country: US
RegDate: 2010-10-29
Updated: 2017-06-16
Ref:
https://rdap.arin.net/registry/entity/AL-3OrgTechHandle: ALIBA-ARIN
OrgTechName: Alibaba NOC
OrgTechPhone: +1-408-748-1200
OrgTechEmail:
OrgTechRef:
https://rdap.arin.net/registry/entity/ALIBA-ARINOrgNOCHandle: ALIBA-ARIN
OrgNOCName: Alibaba NOC
OrgNOCPhone: +1-408-748-1200
OrgNOCEmail:
OrgNOCRef:
https://rdap.arin.net/registry/entity/ALIBA-ARINOrgAbuseHandle: NETWO4028-ARIN
OrgAbuseName: Network Abuse
OrgAbusePhone: +1-408-785-5580
OrgAbuseEmail:
OrgAbuseRef:
https://rdap.arin.net/registry/entity/NETWO4028-ARINI plan to edit this in the future if I find more domain names that these scam sites are hiding under. Also, I want to create a WebCrawler that looks for their code in the future so that if they change the ip's and domain names I can find them again and hopefully continue to shut them down. This will force them to completely rewrite their code base.