DomainHighVerifiedSignal 29/100
onex-trade.com
Location
First Seen
Jan 11, 2025
Last Seen
Apr 2, 2026
Found in 5 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
29%
Signal Score
29 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK
MITRE ATT&CK TTPs
Feed Intelligence Summary
5 reports29% confidence
5
Source reports
29%
Confidence score
Category tags
amfbad reputationbank fraudbank securitybankingbinary options fraudblacklisted entitiesblacklisted websitebotnetbotnet activitybrute forcec2command & controlcommand and controlcredential harvestingcredential stuffingcredit card servicescryptocurrencycryptocurrency frauddata exfiltrationdata store exposuredistributed attackseuropeexploitation activityfakefake companiesfake investment platformsfinancefinance and insurancefinancial fraud blacklistfinancial institutionfinancial regulatorfinancial regulator alertfinancial scamfinancial scam blacklistfinancial servicesfinancial technologyforex fraudfrancefraudfraudulent schemefraudulent websitesidentity & access exploitationindicatorinjection activityinvestinvestment fraudinvestment scamsmalicious softwaremalwarenetworknorth americaonline scamspayment processingphishingphishing attackphishing campaignsponzi schemesprocess injectionrecovery scamrecovery scamsregulatory warningresearchedscamscamsscams & fraudsocial engineeringt1055t1071t1071.001t1071.004t1078t1190t1192t1204.002t1486t1496t1499.001t1499.002t1499.003t1565t1566t1566.001t1566.002t1566.003t1573t1588.002t1598t1598.003tor nodeunauthorized financial servicesunauthorized firmunauthorized websitesunited statesunlicensed companieswealth management
Activity Timeline
Apr 2Apr 2
Threat Activity Heatmap
· Peak: 2026-04-02LessMore
Mon
Wed
Fri
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Intelligence SummaryAI Generated
The domain **onex-trade.com**, originating from the United States, has been identified as a significant indicator of compromise (IOC) associated with multiple cyber threats. First observed on January
Threat ScoreLow Risk
29
SIGNAL
Signal Score
29%
Confidence
5
Reports
First seenJan 11, 2025
Last seenApr 2, 2026
Verified IOC
VirusTotal
Not checked
WHOIS
- registrar
- GoDaddy.com, LLC
- description
- https://www.amf-france.org/en/warnings/blacklists | https://protectepargne.amf-france.org
- domain rank
- -1
- raw
- Creation Date: 2023-11-06T13:23:45Z DNSSEC: unsigned Domain Name: ONEX-TRADE.COM Domain Status: clientDeleteProhibited https://icann.org/epp#clientDeleteProhibited Domain Status: clientRenewProhibited https://icann.org/epp#clientRenewProhibited Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited Domain Status: clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited Name Server: KAY.NS.CLOUDFLARE.COM Name Server: REESE.NS.CLOUDFLARE.COM Registrar Abuse Contact Email: [email protected] Registrar Abuse Contact Phone: 480-624-2505 Registrar IANA ID: 146 Registrar URL: http://www.godaddy.com Registrar WHOIS Server: whois.godaddy.com Registrar: GoDaddy.com, LLC Registry Domain ID: 2827511908_DOMAIN_COM-VRSN Registry Expiry Date: 2025-11-06T13:23:45Z Updated Date: 2024-10-25T11:23:05Z
- subdomains count
- 2
Export & API
STIX 2.1 Bundle
CSV Export
Permalink
IOC Journey
highFirst detected 1 year ago · Last seen 2 months ago
Appeared in 5 threat reports