proposal-onyx[.]com
proposal-onyx.com のフィッシング・安全性チェック
“Onyx - XCN Ledger Blockchain”
proposal-onyx.com — 最後に確認されたアクティブな状態 (HTTP 302). ブランドの偽装: Ledger; 詐欺タイプ: Impersonation. 証拠の概要: VT 6/91 (alphaMountain.ai, CRDF, Fortinet, Gridinsoft, Kaspersky); URLScan no malicious verdict; GSB no flag; Spamhaus DBL_PHISH; BL 2 (MetaMask, SEAL); PD 88/100. レジストラ: NiceNIC.
元のフォレンジック記録を保持するため、下の PhishDestroy AI 詳細分析は英語のままです。
proposal-onyx.com entered the PhishDestroy evidence set on Jul 26, 2026. Stored content metadata identifies Ledger as the apparent target. The stored content classification is impersonation. The assembled evidence scores 88/100 (high).
Four independent sources are positive: VirusTotal, MetaMask, SEAL, and Spamhaus DBL. VirusTotal recorded 6 detections among 91 engines: alphaMountain.ai, CRDF, Fortinet, Gridinsoft, Kaspersky, SOCRadar on Aug 6, 2026 at 02:13 UTC. MetaMask and SEAL listed the hostname in the external-blocklist snapshot on Aug 7, 2026 at 18:20 UTC. Spamhaus DBL: DBL_PHISH on Jul 26, 2026 at 14:30 UTC. The evidence is not unanimous. Google Safe Browsing returned no flag on Jul 26, 2026 at 13:49 UTC. URLScan completed without a malicious verdict (score 0) on Jul 26, 2026 at 13:48 UTC.
HTTP 302 was recorded on Aug 7, 2026 at 10:39 UTC. Latest classified outcome: redirect observed; cause http redirect on Aug 7, 2026 at 00:42 UTC. Registration records for the domain list NICENIC INTERNATIONAL GROUP CO., LIMITED as the registrar and Jul 25, 2026 as the creation date. Registration preceded first observation by 1 day. At collection time, the hostname resolved to 62.60.226.88 on AS214351 (FEMO IT SOLUTIONS LIMITED). The recorded endpoint location is Frankfurt am Main, DE. The stored server header is BunnyCDN-DE1-1332. Captured page title: “Onyx - XCN Ledger Blockchain”. DOM analysis completed on Jul 26, 2026 at 14:20 UTC; stored DOM score 0/100. The evidence archive retains 2 visual captures from PhishDestroy and URLScan. IoC extraction completed on Jul 29, 2026 at 01:51 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators. TLS metadata lists Let's Encrypt as the certificate issuer with validity through Oct 23, 2026; checked Jul 26, 2026 at 16:02 UTC.
The 0/100 DOM score means that the DOM pass stored no scored indicators; it does not negate the independent source findings. Taken together, the page content and independent findings support classifying this hostname as Ledger-themed impersonation.
ネットワークセキュリティインテリジェンス Registrar Integrity Alert
脅威対応 Pipeline
公開ブロックリスト登録状況
保存済みキャプチャ
ドメイン・インテリジェンス
技術的な詳細DNS、SSL SAN、タイムスタンプ
ICANN OVERSIGHT
認定と RAA の背景
認定と RAA の背景
ICANNには支払いが済んだ。説明責任は届かなかった。
このgTLDでは、上記のレジストラはICANNとの契約に基づいて運営されています。ICANNは、登録、更新、移管に連動する年間手数料、変動手数料、および取引ベースの手数料を徴収します。
認定:収益化済み。説明責任:後ほどもう一度ご確認ください。
そして魔法が始まります。ICANNがRAA §3.18を書き、レジストラは自らの顧客基盤内の不正利用を自ら調査し、被害者は証拠を無償で提供する一方、各層は誰か別の者が動くのを待ちます。それで被害者が少しでも安全になった気がするなら、結構なことです――請求書は仕事を果たしたわけです。
Latest Classified Outcome 2026-08-07 02:42:30 UTC
脅威情報の照合 · source references
使用技術 · 3 identified
JSDelivr is a free public CDN for open-source projects. It can serve web files directly from the npm registry and GitHub repositories without any configuration.
www.jsdelivr.com 信頼度 100%Content Delivery Network — caches assets at edge locations for faster global delivery.
bunny.net 信頼度 100%VirusTotalによる分析
アーカイブ済み証拠
サイトパフォーマンス分析
Google PageSpeed Insights — mobile performance audit of proposal-onyx.com · checked Jul 26, 2026
証拠および外部報告書
このサイトによって何か影響を受けましたか?
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。
任意のドメインを確認する
保存されたブロックリスト、WHOIS、DNS、および公開スキャン証拠を使用した脅威分析
今すぐスキャンフィッシングを報告する
不審なドメインを当社の脅威データベースに報告してください — コミュニティを守りましょう
レポートリアルタイム脅威情報フィード
最近のフィッシングレポートと観察された可用性の変化
監視最新情報を入手し、安全を確保しましょう
リアルタイムの脅威を監視するか、誤検知だと思われる場合はこのリストに異議を申し立ててください