proposals-cascade[.]xyz
“Private Access”
proposals-cascade.xyz — Контент недоступний. Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 1/91 (Gridinsoft); URLQuery 1 alert; 3 external blocklist matches (MetaMask, ScamSniffer, SEAL); PhishDestroy score 74/100. Реєстратор: PDR.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy identifies proposals-cascade.xyz as an active credential-harvesting domain designed to trick visitors into surrendering sensitive login credentials. The site presents a convincing fake login page labeled "Private Access" to harvest usernames and passwords, often mimicking legitimate business or internal portals. Security teams should treat this as a high-confidence threat because it is already in active use and remains unblocked by most detection engines.
This domain was flagged by PhishDestroy after analysis revealed multiple red flags: it was registered through PDR Ltd. d/b/a PublicDomainRegistry.com on April 22, 2026, and currently resolves to IP address 188.114.97.3. The site uses a Let's Encrypt SSL certificate to appear legitimate, yet VirusTotal shows 1 out of 95 antivirus engines have detected malicious content as of the latest scan. While still under investigation, the combination of a newly registered domain, active hosting, and absence of detections makes this a credible threat vector.
Users who visited proposals-cascade.xyz should immediately change any passwords entered on the site and enable multi-factor authentication on all associated accounts. Check browser history and remove any saved login sessions linked to this domain. If unauthorized access is suspected, contact your IT security team and consider running a malware scan. Report the domain to your email or network administrator to help block future access. Avoid reusing credentials across platforms to prevent credential stuffing attacks.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | cascade.xyz |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 3 identified
Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Докази та зовнішні звіти
PD-20260428-476DE9 Recipient: abuse@publicdomainregistry.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога