IOC Radar
DomainHighVerifiedSignal 29/100

onex-trade.com

Location
United StatesUnited States
First Seen
Jan 11, 2025
Last Seen
Apr 2, 2026
Jan 11
First Seen
518d ago
Apr 2
Last Seen
72d ago
5
Reports
source reports
29%
Confidence
high
Found in 5 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
29%
Signal Score
29 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

22 techniques

Feed Intelligence Summary

5 reports29% confidence
5
Source reports
29%
Confidence score
Category tags
amfbad reputationbank fraudbank securitybankingbinary options fraudblacklisted entitiesblacklisted websitebotnetbotnet activitybrute forcec2command & controlcommand and controlcredential harvestingcredential stuffingcredit card servicescryptocurrencycryptocurrency frauddata exfiltrationdata store exposuredistributed attackseuropeexploitation activityfakefake companiesfake investment platformsfinancefinance and insurancefinancial fraud blacklistfinancial institutionfinancial regulatorfinancial regulator alertfinancial scamfinancial scam blacklistfinancial servicesfinancial technologyforex fraudfrancefraudfraudulent schemefraudulent websitesidentity & access exploitationindicatorinjection activityinvestinvestment fraudinvestment scamsmalicious softwaremalwarenetworknorth americaonline scamspayment processingphishingphishing attackphishing campaignsponzi schemesprocess injectionrecovery scamrecovery scamsregulatory warningresearchedscamscamsscams & fraudsocial engineeringt1055t1071t1071.001t1071.004t1078t1190t1192t1204.002t1486t1496t1499.001t1499.002t1499.003t1565t1566t1566.001t1566.002t1566.003t1573t1588.002t1598t1598.003tor nodeunauthorized financial servicesunauthorized firmunauthorized websitesunited statesunlicensed companieswealth management

Activity Timeline

1 total obs
Apr 2Apr 2

Threat Activity Heatmap

· Peak: 2026-04-02
Less
More
Mon
Wed
Fri
Jun
·
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
1
Minimal
Intelligence SummaryAI Generated

The domain **onex-trade.com**, originating from the United States, has been identified as a significant indicator of compromise (IOC) associated with multiple cyber threats. First observed on January

Threat ScoreLow Risk
29
SIGNAL
Signal Score
29%
Confidence
5
Reports
First seenJan 11, 2025
Last seenApr 2, 2026
Verified IOC

VirusTotal

Not checked

WHOIS

registrar
GoDaddy.com, LLC
description
https://www.amf-france.org/en/warnings/blacklists | https://protectepargne.amf-france.org
domain rank
-1
raw
Creation Date: 2023-11-06T13:23:45Z DNSSEC: unsigned Domain Name: ONEX-TRADE.COM Domain Status: clientDeleteProhibited https://icann.org/epp#clientDeleteProhibited Domain Status: clientRenewProhibited https://icann.org/epp#clientRenewProhibited Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited Domain Status: clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited Name Server: KAY.NS.CLOUDFLARE.COM Name Server: REESE.NS.CLOUDFLARE.COM Registrar Abuse Contact Email: [email protected] Registrar Abuse Contact Phone: 480-624-2505 Registrar IANA ID: 146 Registrar URL: http://www.godaddy.com Registrar WHOIS Server: whois.godaddy.com Registrar: GoDaddy.com, LLC Registry Domain ID: 2827511908_DOMAIN_COM-VRSN Registry Expiry Date: 2025-11-06T13:23:45Z Updated Date: 2024-10-25T11:23:05Z
subdomains count
2

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

high
First detected 1 year ago · Last seen 2 months ago
Appeared in 5 threat reports