This company has verified ownership of the profile and can respond to reviews.
Verified Safe
Current checks include security-provider warnings. Review the detected warnings and supporting trust evidence before relying on the site.
content related to educational content and guides; sports
Last checked September 1, 2026 at 7:00 PM by
Gridinsoft Trust Model v2.5.3
Share this report?
Independent Gridinsoft analysis
What Gridinsoft observed on Mexicobeach.com
A Gridinsoft threat analyst reviewed the site directly and documented the evidence behind this decision.
Current review
Review ID
GMA-20260901190040-b2e8ff9e
Reviewed
by Gridinsoft Threat Analyst
Analyst finding
Safe
Evidence basis
First-party site analysisExternal vendor intelligence: Contradictory context — not used for this decision
The current public mexicobeach.com deployment is Safe in the reviewed scope. The August NoChain and ClickFix compromise is independently confirmed by archived object-level evidence, but its malicious service-worker URL and page injection are no longer present, and no current malicious object or behavior was reproduced across the representative public surface.
Analyst findings
Info4
Info01
Historical NoChain and ClickFix compromise confirmed
Archived object-level evidence confirms that the site distributed a malicious service worker during August 2026. This was a real compromise, not merely a domain reputation label, but the finding is historical rather than current.
Info02
Historical service-worker delivery is not present now
The exact worker URL now returns 404, and current reviewed pages do not register it or contain the historical loader and contract reference.
Info03
No current malicious behavior reproduced in reviewed public scope
The current root, www redirect, representative public pages, and multiple request profiles served expected tourism content without a fake verification prompt, command execution instruction, unrelated redirect, or automatic download.
Info04
Residual library is reachable but not active in the reviewed flow
A generic ethers.js library remains under the former plugin path. It contains none of the historical malicious loader elements and is not referenced by the current pages reviewed, although server-side removal of unused incident artifacts remains advisable.
Review 6 documented observations
View evidence
01HTTP response
The www host redirected once to the same-site apex homepage, which returned the expected Mexico Beach tourism content. Windows, macOS, crawler, and command-line request profiles received identical current page content.
HTTP status200
Final URLhttps://mexicobeach.com/
Analyst observationFour request profiles received identical current homepage content, without an unrelated redirect, fake verification prompt, command-copy instruction, or automatic download.
02Content
Thirty representative public URLs were reviewed across the site's 266 sitemap entries, including pages, posts, events, venues, categories, contact, privacy, and uploaded HTML content. The reviewed responses did not contain the historical NoChain contract, service-worker registration, ClickFix instructions, PowerShell or mshta commands, or clipboard-execution behavior.
Public artifact URLhttps://mexicobeach.com/wp-sitemap.xml
Analyst observationThe sampled current pages remained on the expected tourism site and did not reproduce the historical injection or a current malicious object.
03HTTP response
The exact service-worker URL used during the August compromise now returns HTTP 404, and current reviewed pages do not register or reference it.
HTTP status404
Analyst observationNo current reviewed page contained nochain-sw.js, the historical contract address, or a serviceWorker.register call for that worker.
04Historical content
A public snapshot captured on August 24, 2026 preserves a real malicious homepage injection. It registered /nochain-sw.js and loaded attacker-controlled instructions through Base smart contract 0x58460d0b3d4d6b03761c89120393c0c676676496.
Public artifact URLhttps://web.archive.org/web/20260824093544id_/https://mexicobeach.com/
Page elementThe archived page contains a serviceWorker.register call for https://mexicobeach.com/nochain-sw.js and the Base contract address 0x58460d0b3d4d6b03761c89120393c0c676676496.
05Historical content
The archived service worker intercepted HTML navigations, removed content-security-policy headers, injected a script, and retrieved mutable instructions through public Base RPC endpoints. This confirms an object-level malicious delivery mechanism rather than a blacklist-only domain label.
Public artifact URLhttps://web.archive.org/web/20260824093642id_/https://mexicobeach.com/nochain-sw.js
Page elementThe archived worker handled navigation requests, deleted content-security-policy response headers, and injected code obtained through the same Base contract.
06Content
A standalone ethers.js library remains publicly reachable under the former plugin path, but its current content does not contain the historical contract, loader, service-worker registration, or ClickFix instructions, and the reviewed current pages do not reference it.
HTTP status200
MIME typeapplication/javascript
Analyst observationThe reachable file identifies itself as ethers.js 6.16.0; the malicious loader and contract address are absent, and no reviewed current page references this path.
Scope and limitations
The review covered the current unauthenticated public root, www redirect, 30 representative URLs sampled from 266 sitemap entries, the historical malicious service-worker URL, public DNS and TLS, and archived incident evidence; it did not access server files, logs, the database, WordPress administration, email systems, or private accounts.
Browsers that visited during the compromise may retain an installed service worker until their browser performs an update or unregistration. The current origin returns 404 at the former worker URL and does not register it for new visits, but previously affected browser storage was not available for review.
The standalone ethers.js library under the former plugin path remains publicly reachable but is not referenced by reviewed current pages and does not contain the historical malicious loader. Server-side ownership and cleanup of the remaining plugin directory were not assessed.
The result applies to the public content and behavior reviewed at the recorded time; future content or an exact URL that behaves differently requires separate review.
This domain was registered May 5, 1997 at 4:00 AM through the company GoDaddy.com, LLC
WHOIS registrant details are private. Separately, the business has verified control of its Gridinsoft profile.
We reviewed mexicobeach.com and found mostly positive signals. Current checks lean toward a legitimate, lower-risk profile, although a few caution points still keep it short of a fully verified standing. The current trust score is 89/100. Key signals include security-provider warnings and a domain age of 29.3 years. Verify key details before sharing personal information or relying on the site for important actions.
Figure 2.
Website screenshot for Mexicobeach.com.
2026-09-01 22:00:30
FAQ
Is mexicobeach.com safe?
Based on current analysis, mexicobeach.com appears to be generally safe. The final verdict also reflects manual expert review. Basic verification is still reasonable before relying on the site.
Why does mexicobeach.com look trustworthy?
Key factors include registrar information (GoDaddy.com, LLC), hosting in US, and content related to educational content and guides; sports. The trust score blends security detections, domain and infrastructure signals, and on-page behavior patterns. Taken together, these factors support a mostly positive trust assessment, although routine verification is still reasonable.
Mexicobeach Digital Footprints
A structured view of the site's detected themes, page signals, and related online footprint elements.
Sports
Guides
Accessories
Link Shortener
This website employs URL shortening services to create abbreviated web addresses. While commonly used for convenience and marketing purposes, shortened URLs can obscure destination websites and may be exploited to conceal malicious or deceptive content.
Wordpress Platform
Our analyzer determines that this website is using WordPress CMS. WordPress is the most popular content management system, powering over 43% of websites globally.
Google Tag Manager
The mexicobeach.com website uses Google Tag Manager to add and update tracking tags on its website.
Facebook Integration
jQuery Library
Social Media Links
The presence of social media links on the website indicates that it references social media accounts. This signal alone does not confirm ownership or authenticity of those profiles.
Established Domain
This site has maintained active domain presence over time, indicating operational continuity.
Claimed Company Profile
The company behind mexicobeach.com has claimed its profile in the Gridinsoft portal and provided verified ownership details.
Verified X Profile
Ownership verification confirms that this site controls the X profile @mexicobeachfla (Discover Mexico Beach, FL) (4,251 followers, 388 following, 4,442 posts, listed 59 times, since 2010, no account badge, location: Mexico Beach, FL).
Verified YouTube Channel
Ownership verification confirms that this site controls the YouTube channel Mexico Beach, FL (@mexicobeachfla) (437 subscribers, 203 videos, 4,565,196 total views, since 2010, country: US).
External provider warnings: 9/30
This section shows what independent external security sources say about this site.
A warning appears when one or more sources report malware, phishing, abuse, or other safety concerns. Each row shows the source and its verdict.
If no source reports a warning, the site is shown as clear in this section.
alphaMountain.ai
Malicious
Chong Lua Dao
Malicious
CRDF
Malicious
CyRadar
Malware
Fortinet
Malware
Lionic
Malware
MalwareURL
Malware
SOCRadar
Malicious
Sophos
Malware
External provider results for Mexicobeach.com, last checked September 1, 2026.
— VirusTotal
Domain Information
CreatedMay 5, 1997 at 4:00 AMUpdated: May 6, 2026 at 4:48 PM · Expires: May 6, 2027 at 4:00 AM
Domain StatusClient: Delete · Renew · Transfer Prohibited+1 more·DNSSEC: UNSIGNED
Top Level Domain.comGeneric TLD
Technical Details
IP Address160.153.0.16
Hostname16.0.153.160.host.secureserver.net
Hosting ProviderAS209242 Cloudflare London, LLCTempe, Arizona, US
SSL CertificateWE1TLS 1.3 · Valid for: 3 months · from August 1, 2026 at 8:11 PM · to October 30, 2026 at 9:11 PM
Name Serversns37.domaincontrol.com ns38.domaincontrol.com
Content Analysis
Website titleYour Guide to Mexico Beach, FL – The Unforgettable Coast
Website descriptionDiscover the tranquil seaside town that is Mexico Beach. Explore things to do, restaurants, and places to stay from the city's official tourism website.
stats.g.doubleclick.netcdn.userway.orgwww.google.comwww.arsdigitalmarketing.comjs.adsrvr.orgwww.visitflorida.comwww.tiktok.comgoo.glmanage.hdrelay.comtheideaboutique.comscontent-lax7-1.cdninstagram.comanalytics.google.cominsight.adsrvr.orgwww.youtube.comwww.googletagmanager.com
and 13 more
Security Analysis
Detection SignaturesThese signatures are used to generate the security fingerprint below.
Verified ServicesThis domain has been verified by the following legitimate services and organizations, confirming authentic ownership and proper email security configuration.
Facebook
Social media platform by Meta.
Google Verification
Domain ownership verified by Google.
Security FingerprintUnique identifier based on site analysis
Mexicobeach.com has a low visibility ranking globally.
Loading...
Are You the Owner?
If you own Mexicobeach.com and want to challenge the trust score, please submit a review request via portal.gridinsoft.com. There you can claim your profile and add verified company/contact details. If you cannot access the portal, email legal(at)gridinsoft.com with proof of legitimacy and contact details. We never charge website owners for reviews or reconsideration requests. For more information, please review our Disclaimer.
A website report warns you. A PC scan protects you.
Unsafe sites can leave adware, unwanted apps, or hidden malware in downloads and browser settings. Run Gridinsoft Anti-Malware to check what may already be on this Windows PC.
Checks active threats, startup items, and suspicious downloads
Finds adware and unwanted apps linked to unsafe websites
Shows scan results before you decide what to remove
Your comment is currently undergoing moderation and will be published shortly.
Help protect others by sharing this page on social media! The more people who know about mexicobeach.com, the fewer chances they have to deceive someone else.Help others evaluate mexicobeach.com by sharing this page on social media!
Help protect others by sharing this page on social media! The more people who know about mexicobeach.com, the fewer chances they have to deceive someone else. Help others evaluate mexicobeach.com by sharing this page on social media!