monex-co-jp[.]0793sjpc[.]cn
“ログイン/マネックス証券”
monex-co-jp.0793sjpc.cn — Não verificado. Tipo de golpe: Credential Phishing. Resumo das evidências: VirusTotal 17/91 (ADMINUSLabs, BitDefender, Chong Lua Dao, CRDF, CyRadar); PhishDestroy score 95/100. Registrador: Web Commerce Communica….
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
The domain monex-co-jp.0793sjpc.cn has been identified as a credential harvesting phishing site specifically designed to impersonate Monex Securities, a legitimate financial services provider. Analysis confirms the site was operational with the page title ログイン/マネックス証券, directly mimicking the authentic login portal of the targeted brand. Current status indicates the domain has been taken offline, though prior activity remains a significant concern for users who may have interacted with the fraudulent page. Infrastructure analysis reveals multiple high-confidence indicators of malicious activity. The domain was registered through Web Commerce Communications Limited and has been flagged by 17 of 95 security vendors on VirusTotal, including entries on two distinct security blocklists. No SSL certificate was present, increasing the risk of credential interception during transmission. The domain was created on August 25, 2023, and resolves to the IPv6 address 2606:4700:3031::ac43:b610, hosted on AS13335 Cloudflare, Inc. infrastructure. The use of Cloudflare services is consistent with threat actor tactics to obfuscate origin servers and evade detection. The elevated risk level assigned to this domain is justified by the combination of brand impersonation, absence of encryption, and confirmed malicious detections. While the site is currently offline, affected users should immediately reset credentials for Monex Securities and any other accounts where identical login details may have been reused. Organizations are advised to block the domain at the network perimeter and monitor for related indicators of compromise, including the IPv6 address and registrar details. Proactive measures such as multi-factor authentication and user education on recognizing phishing attempts are strongly recommended to mitigate future exposure.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo