governances-onyx[.]com
“Onyx - XCN Ledger Blockchain”
governances-onyx.com — असत्यापित. ब्रांड प्रतिरूपण: Ledger; घोटाले का प्रकार: Impersonation. साक्ष्य सारांश: VirusTotal 12/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Fortinet, Google Safe Browsing); URLQuery 5 alerts; Google Safe Browsing flagged; Spamhaus DBL_PHISH; 3 external blocklist matches (MetaMask, ScamSniffer, SEAL); PhishDestroy score 100/100. रजिस्ट्रार: NiceNIC.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
The domain governances-onyx.com was registered on July 22, 2026 through NICENIC INTERNATIONAL GROUP CO., LIMITED and is currently resolving to the IPv4 address 62.60.226.88. Google Safe Browsing has flagged the domain for social engineering, indicating that it is being used to lure victims into divulging credentials or personal information. The domain is listed on three independent security blocklists and is actively blocked by the PhishDestroy, MetaMask, and SEAL filtering platforms, reinforcing its classification as a malicious resource.
VirusTotal analysis shows that three of ninety‑one scanned security vendors have raised detections against the domain, providing additional corroboration of its hostile intent. Infrastructure observations reveal the authoritative name servers coco.bunny.net and kiki.bunny.net, which can be used as ancillary indicators for network‑level blocking. The threat is catalogued as generic phishing with a high risk rating and remains active as of the report date, July 26, 2026.
No public page title, SSL certificate details, or HTTP response codes have been disclosed, and the exact phishing lure or impersonated brand has not been identified in the available intelligence. Given the limited but consistent evidence—registration date, hosting IP, Safe Browsing flag, blocklist presence, and vendor detections—defenders should prioritize immediate mitigation: add governances-onyx.com to DNS sinkhole or firewall deny lists, monitor outbound connections to 62.60.226.88, and incorporate the observed nameserver pattern into intrusion‑detection signatures. Continuous monitoring is advised to capture any future payload changes or additional infrastructure that may emerge as the campaign evolves.
नेटवर्क सुरक्षा इंटेलिजेंस Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | fonts-css2-sans.b-cdn.net |
malicious | Sinkholed |
| DNS4EU | fonts-css2-sans.b-cdn.net |
malicious | Sinkholed |
| DigiCert UltraDNS | governances-onyx.com |
malicious | Sinkholed |
| Hagezi Threat Feed | governances-onyx.com |
malicious | Sinkholed |
| Quad9 DNS | governances-onyx.com |
malicious | Sinkholed |
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-16 02:42:20 UTC
थ्रेट इंटेलिजेंस क्रॉस-रेफ़रेंस · source references
तकनीकें · 3 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% विश्वासJSDelivr is a free public CDN for open-source projects. It can serve web files directly from the npm registry and GitHub repositories without any configuration.
www.jsdelivr.com 100% विश्वासवायरसटोटल विश्लेषण
संग्रहीत साक्ष्य
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of governances-onyx.com · checked Jul 26, 2026
साक्ष्य और बाहरी रिपोर्टें
PD-20260726-FCF0D9 Recipient: abuse@as214351.com क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।