biee[.]lol
biee.lol のフィッシング・安全性チェック
“$WAR - War on USD | Trade USD1 Pair | Join the Resistance”
biee.lol — コンテンツが利用できません (HTTP 502). 証拠の概要: VT 7/94 (alphaMountain.ai, CyRadar, Ermes, Forcepoint ThreatSeeker, Fortinet); URLQuery 2 det.; URLScan no malicious verdict; GSB no flag; Spamhaus DBL_PHISH; BL 2 (MetaMask, SEAL); PD 80/100. レジストラ: NiceNIC.
元のフォレンジック記録を保持するため、下の PhishDestroy AI 詳細分析は英語のままです。
biee.lol entered the PhishDestroy evidence set on Mar 27, 2026. The assembled evidence scores 80/100 (high).
Five independent sources are positive: VirusTotal, MetaMask, SEAL, Spamhaus DBL, and URLQuery. VirusTotal recorded 7 detections among 94 engines: alphaMountain.ai, CyRadar, Ermes, Forcepoint ThreatSeeker, Fortinet, Gridinsoft, SOCRadar on Jun 26, 2026 at 11:11 UTC. MetaMask and SEAL listed the hostname in the external-blocklist snapshot on Aug 7, 2026 at 18:20 UTC. Spamhaus DBL: DBL_PHISH on Jul 13, 2026 at 22:34 UTC. URLQuery recorded 2 detections. The evidence is not unanimous. AlienVault OTX listed 1 community pulse reference (not vendor detections) on Apr 23, 2026 at 05:45 UTC. Google Safe Browsing returned no flag on Jun 26, 2026 at 11:11 UTC. URLScan completed without a malicious verdict (score 0).
HTTP 502 was recorded on Aug 7, 2026 at 01:33 UTC; content was unavailable. Latest classified outcome: registration hold observed; cause registrar client hold; mechanism client hold; observed actor NICENIC INTERNATIONAL GROUP CO., LIMITED on Aug 7, 2026 at 01:46 UTC. Registration records for the domain list NICENIC INTERNATIONAL GROUP CO., LIMITED as the registrar and Mar 27, 2026 as the creation date. Registration preceded first observation by 0 days. At collection time, the hostname resolved to 104.21.13.57 on AS13335 (Cloudflare, Inc.). The recorded endpoint location is Toronto, CA. The stored server header is cloudflare. Captured page title: “$WAR - War on USD | Trade USD1 Pair | Join the Resistance”. DOM analysis completed on Jul 29, 2026 at 04:03 UTC; stored DOM score 0/100. The evidence archive retains 2 visual captures from PhishDestroy and URLScan. IoC extraction completed on Aug 1, 2026 at 04:20 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators. TLS metadata lists Let's Encrypt / E8 as the certificate issuer with validity through Jun 6, 2026; checked Mar 28, 2026 at 07:54 UTC.
No target brand has been confirmed from stored page content; hostname wording alone is not treated as brand evidence. The 0/100 DOM score means that the DOM pass stored no scored indicators; it does not negate the independent source findings. Taken together, the page content and independent findings support classifying this hostname as phishing. The stored record does not establish the post-click interaction, and it does not claim a confirmed wallet-draining transaction or credential submission.
ネットワークセキュリティインテリジェンス Registrar Integrity Alert
脅威対応 Pipeline
公開ブロックリスト登録状況
保存済みキャプチャ
ドメイン・インテリジェンス
技術的な詳細DNS、SSL SAN、タイムスタンプ
ICANN OVERSIGHT
認定と RAA の背景
認定と RAA の背景
ICANNには支払いが済んだ。説明責任は届かなかった。
このgTLDでは、上記のレジストラはICANNとの契約に基づいて運営されています。ICANNは、登録、更新、移管に連動する年間手数料、変動手数料、および取引ベースの手数料を徴収します。
認定:収益化済み。説明責任:後ほどもう一度ご確認ください。
そして魔法が始まります。ICANNがRAA §3.18を書き、レジストラは自らの顧客基盤内の不正利用を自ら調査し、被害者は証拠を無償で提供する一方、各層は誰か別の者が動くのを待ちます。それで被害者が少しでも安全になった気がするなら、結構なことです――請求書は仕事を果たしたわけです。
Latest Classified Outcome 2026-08-07 03:46:39 UTC
VirusTotalによる分析
証拠および外部報告書
このサイトによって何か影響を受けましたか?
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。
任意のドメインを確認する
保存されたブロックリスト、WHOIS、DNS、および公開スキャン証拠を使用した脅威分析
今すぐスキャンフィッシングを報告する
不審なドメインを当社の脅威データベースに報告してください — コミュニティを守りましょう
レポートリアルタイム脅威情報フィード
最近のフィッシングレポートと観察された可用性の変化
監視最新情報を入手し、安全を確保しましょう
リアルタイムの脅威を監視するか、誤検知だと思われる場合はこのリストに異議を申し立ててください