proposal-scroll[.]xyz
proposal-scroll.xyz 피싱 및 보안 점검
“Scroll - Native zkEVM Layer 2 for Ethereum”
proposal-scroll.xyz — 콘텐츠를 사용할 수 없음 (HTTP 502). 브랜드 사칭: Scroll; 사기 유형: Brand Impersonation. 증거 요약: VT 4/91 (Forcepoint ThreatSeeker, Fortinet); URLQuery 0; URLScan no malicious verdict; GSB no flag; Spamhaus DBL_PHISH; BL 2 (MetaMask, SEAL); PD 83/100. 등록기관: NiceNIC.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
PhishDestroy first observed proposal-scroll.xyz on Jun 19, 2026. The hostname explicitly references Scroll; stored content metadata identifies the same apparent target. The captured page title is “Scroll - Native zkEVM Layer 2 for Ethereum”. Stored page analysis classifies the content as brand impersonation. Current evidence score: 83/100 (critical).
Positive findings are stored from 4 sources: VirusTotal, MetaMask, SEAL, and Spamhaus DBL. VirusTotal recorded 4 detections among 91 engines: Forcepoint ThreatSeeker, Fortinet on Jun 19, 2026 at 08:00 UTC. MetaMask and SEAL listed the hostname in the external-blocklist snapshot on Aug 7, 2026 at 22:20 UTC. Spamhaus DBL: DBL_PHISH on Jul 19, 2026 at 14:35 UTC. Non-positive and contextual checks: URLQuery recorded no positive detection on Jun 19, 2026 at 08:40 UTC. Google Safe Browsing returned no flag on Jun 19, 2026 at 08:00 UTC. URLScan completed without a malicious verdict (score 0) on Jul 29, 2026 at 03:03 UTC.
HTTP 502 was recorded on Aug 7, 2026 at 01:36 UTC; content was unavailable. Latest classified outcome: registration hold observed; cause registrar client hold; mechanism client hold; observed actor NICENIC INTERNATIONAL GROUP CO., LIMITED on Aug 7, 2026 at 02:12 UTC. Registration records for the domain list NICENIC INTERNATIONAL GROUP CO., LIMITED as the registrar and Jun 17, 2026 as the creation date. Registration preceded first observation by 1 day. At collection time, the hostname resolved to 104.21.76.154 (AS13335 Cloudflare, Inc.). The IP and ASN identify shared Cloudflare edge infrastructure; the origin server is not established by this address. DOM analysis on Jun 19, 2026 at 10:20 UTC returned 83/100. The evidence archive retains 3 visual captures from PhishDestroy, URLScan, and URLQuery. IoC extraction on Aug 1, 2026 at 04:05 UTC retained 0 format-validated wallet addresses and 1 Telegram indicator. TLS metadata lists Google Trust Services / WE1 as the certificate issuer with validity through Sep 15, 2026; checked Jun 19, 2026 at 10:00 UTC.
The content indicators and 4 positive source findings support the current Scroll-themed brand impersonation classification.
네트워크 보안 인텔리전스 Registrar Integrity Alert
위협 대응 Pipeline
공개 차단 목록 상태
저장된 캡처
도메인 인텔리전스
기술적 세부 사항DNS, SSL SAN, 타임스탬프
ICANN OVERSIGHT
인증 및 RAA 상황
인증 및 RAA 상황
ICANN은 돈을 받았다. 책임은 끝내 오지 않았다.
이 gTLD에서 위 등록기관은 ICANN과의 계약에 따라 운영됩니다. ICANN은 등록, 갱신 및 이전과 연계된 연간 수수료, 변동 수수료 및 거래 기반 수수료를 징수합니다.
인증: 수익화 완료. 책임: 나중에 다시 확인하십시오.
그러고 나면 마법이 시작됩니다. ICANN은 RAA §3.18을 작성하고, 등록기관은 자기 고객 기반 안의 악용을 스스로 조사하며, 피해자는 증거를 공짜로 제공하는 동안 모든 단계는 다른 누군가가 움직이기만을 기다립니다. 그 덕분에 피해자가 더 안전하다고 느낀다면 훌륭합니다—청구서가 제 몫을 한 셈이니까요.
Latest Classified Outcome 2026-08-07 04:12:16 UTC
VirusTotal 분석
증거 및 외부 보고서
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.