passkeyonboard[.]com
Analyse phishing et sécurité de passkeyonboard.com
“V”
passkeyonboard.com — Contenu indisponible (HTTP 502). Type d'arnaque : Credential Phishing. Résumé des preuves: VirusTotal 6/91 (ChainPatrol, alphaMountain.ai, CRDF, Gridinsoft, SOCRadar); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100. Bureau d’enregistrement: NiceNIC.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
Analysis as of July 28, 2026 indicates that the domain passkeyonboard.com was registered on July 21, 2026 through NICENIC INTERNATIONAL GROUP CO., LIMITED. The domain resolves to the IPv4 address 35.157.26.135 and uses the nsone.net name server set dns1.p03.nsone.net through dns4.p03.nsone.net. The site is currently flagged by two independent blocklist operators, PhishDestroy and SEAL, and appears on two additional security blocklists, confirming that it is being actively mitigated in multiple threat‑intelligence feeds. VirusTotal scans show that three of ninety‑one antivirus or URL‑reputation engines have raised detections against the domain, providing modest but corroborating evidence of malicious use.
The only visible page element captured is the title "V", which does not reveal the intended victim brand or lure content, and no further page‑level analysis has been published. The threat classification supplied is generic phishing, and the risk level is assessed as high, consistent with the recent creation date and rapid blocklist inclusion. Uncertainty remains regarding the specific phishing campaign payload, the credential‑harvesting mechanism, and any associated command‑and‑control infrastructure, as no additional artifacts such as SSL certificate details, HTTP response codes, or safe‑browsing verdicts have been disclosed.
Defenders should therefore treat any traffic to passkeyonboard.com as hostile. Recommended actions include adding the domain and its resolving IP address to outbound and inbound deny lists, updating web‑proxy and DNS filtering policies to block the domain, monitoring for any internal connections to the nsone.net name servers, and ensuring that endpoint protection solutions are refreshed to incorporate the three VirusTotal detections. Continuous monitoring of the domain’s status on blocklists and periodic re‑scans with VirusTotal or similar services are advised to capture any escalation in detection coverage.
Renseignements sur la sécurité réseau Registrar context
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-08 04:12:10 UTC
Technologies · 2 identified
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com Confiance à 100 %HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Confiance à 100 %Analyse VirusTotal
Preuves archivées
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif