الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 9. قوائم الحظر العامة التي تبلغ عن تطابق: 2. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

keystonenexus[.]one

“Download Keystone Nexus Desktop for Windows | Official”

حكم التهديد حرجة 77/100 درجة الأدلة
التوفر المحتوى غير متوفر لم يكن المحتوى متاحًا في الملاحظة الأخيرة
اكتشافات VirusTotal: 9/91 Spamhaus DBL: DBL_SPAM تطابقات القائمة السوداء المخزنة: 2 نوع الاحتيال: Brand Impersonation
OTX: 2 refs 10/06/2026 1 Report Sent

ملخص الأدلة

حرج
Evidence score
77/100

The domain keystonenexus.one has been identified as a confirmed phishing site specifically targeting users of Keystone Wallet, a hardware cryptocurrency wallet. Analysis indicates this domain hosts a fraudulent download page titled 'Download Keystone Nexus Desktop for Windows | Official,' designed to distribute malicious software under the guise of legitimate wallet software. The domain is currently offline, though prior activity suggests it operated as a crypto-related threat, likely aiming to deploy malware or harvest credentials from unsuspecting victims. Technical indicators reveal the domain was flagged by 15 of 95 security vendors on VirusTotal, with additional presence in 2 AlienVault OTX threat intelligence pulses. It is registered through Global Domain Group LLC and resolves to the IP address 193.233.113.39. The site appears on 3 security blocklists, including MetaMask and PhishDestroy, and has a Gridinsoft trust score of 0/100. Infrastructure analysis reveals the use of Tailwind CSS, Nginx, and HTTP/3, which are not inherently malicious but are consistent with modern phishing site deployments. The domain’s registration and hosting patterns align with known phishing campaigns targeting cryptocurrency users. Current status indicates the domain has been taken offline, though the infrastructure may remain a residual risk. Organizations and individuals are advised to block the domain and its associated IP (193.233.113.39) at the network level. Users who accessed the site should assume potential exposure and take immediate action, including scanning affected systems for malware, revoking any cryptocurrency wallet permissions granted during the interaction, and rotating credentials for related accounts. Monitoring for further activity from the registrar (Global Domain Group LLC) and associated IP ranges is recommended for proactive defense.

لقطة الأدلة المرسلة

أُرسل
سجلات الدفتر
1
معرّف القضية
PD-20260610-F6193C
عنوان الصفحة الملتقطة
Download Keystone Nexus Desktop for Windows | Official
ملف PDF
دليل PDF
النص الكامل للدليل
Policy Violations:
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (US):
18 U.S.C. § 1343 - Wire Fraud
18 U.S.C. § 1030 - Computer Fraud and Abuse Act (CFAA)
15 U.S.C. § 45 - FTC Act (Deceptive Practices)
Federal laws prohibit wire fraud, computer fraud, and deceptive business practices.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
VirusTotal
VirusTotal
9 det.
OTX references
DNS Security
5/14
شهادة TLS
منتهية الصلاحية أو غير متحقق منها
الحالة المرصودة
المحتوى غير متوفر HTTP 502
PhishDestroy
قائمة الإتلاف
مدرج
Reports Sent
1

Data Coverage

VirusTotal 9 / 91 URLQuery checked — no detections recorded PhishStats لم يتم التحقق منها OTX 2 community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict التقييم غير متاح حجب عناوين DNS 5/14 TLS منتهية الصلاحية أو غير متحقق منها WHOIS not parsed لقطة شاشة 3 captures · 3 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكات
DNS Provider Blocks 5 / 14
Brand Keystone Brand Ton Controld Adblock Controld Family Controld Malware
SSL Certificate Invalid
SSL certificate is invalid or expired. Issuer:

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
14/14

تغطية قوائم الحظر

١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026

٨ مصادر خارجية مراقبة لا تطابق

المخطط الزمني للاكتشاف

  1. VirusTotal

    9 ← 15

لقطة محفوظة

عنوان الصفحة
Download Keystone Nexus Desktop for Windows | Official
شهادة TLS
منتهية الصلاحية أو غير متحقق منها · صادرة عن Let's Encrypt / R12

معلومات النطاق

النطاق
الخادم / ASN nginx/1.24.0 · AS205775 NEON CORE NETWORK LLC
سمعة عنوان IP IP abuse confidence 0/100 0 reports checked 13/07/2026
مسجّل النطاق Global Domain Group US(US)
جهة الإبلاغ عن إساءة الاستخدامabuse@ipocean.ru
البحث في قاعدة بيانات WHOISICANN RDAP لـ keystonenexus.one →
عنوان IP 193.233.113.39 FI
الموقع الجغرافيFI Helsinki, FI
الشبكةAS205775 · Partner Hosting LTD
حالة HTTP502 Error
الوقت حتى أول تعذّر للوصول 6 days
ما الذي نحتسبه الوقت المنقضي من أول تقرير عن إساءة الاستخدام المخزن إلى الملاحظة الأولى بأن المحتوى غير متوفر. هذا لا يحدد السبب.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
تاريخ أول اكتشاف10/06/2026
Submitted URLhttp://keystonenexus.one/
خوادم الأسماءgeorgia.ns.cloudflare.com
بصمة TLS
رصد TLSصالح منذ 22/05/2026فُحص في 10/06/2026
ICANN OVERSIGHT

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.

التقنيات

حُدّدت ٣ تقنيات عالية الثقة

Tailwind CSS Nginx HTTP/3
Cloudflare Radar
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

9 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed
alphaMountain.ai
BitDefender
Chong Lua Dao
CyRadar
Fortinet
G-Data
Gridinsoft
كاسبرسكي
SOCRadar
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of keystonenexus.one · checked Jun 26, 2026

74
Needs Work
Performance
FCP
3.34s
First Contentful Paint
LCP
4.61s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
4.63s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان

أدوات خارجية

HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/keystonenexus.one"
  title="PhishDestroy threat report for keystonenexus.one"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

رسالة شكر صادقة جداً

منشئ مسودة ساخرة

المستلم
سياق الرسوم

مسودة ساخرة. أرقام الرسوم تقديرية، ولا ندّعي نسبتها بدقة إلى هذا النطاق.