1. フィッシング/amex/dnsv/nagao-kango.com
Contents
ドメイン乗取 NSはdnsvのままだが、info.* は削除された。-- ToshinoriMaeno 2022-05-20 02:12:46
https://info.nagao-kango.com/ Firefoxでは警告がでる。
- 進むと、アメリカン・エキスプレスを騙るフィッシングサイトへ
Vpassログインが表示された。-- ToshinoriMaeno 2022-05-14 00:56:07
これもお名前.comのフィッシングメールに引っかかったクチのようです。
https://www.nagaoclinic.or.jp/home_care/nursing/ こっちが本家のようです。-- ToshinoriMaeno 2022-05-12 14:27:42
1.1. whois
Domain Name: NAGAO-KANGO.COM Registry Domain ID: 2096219147_DOMAIN_COM-VRSN Registrar WHOIS Server: whois.discount-domain.com Registrar URL: http://gmo.jp Updated Date: 2022-05-10T05:15:00Z Creation Date: 2017-02-08T09:54:26Z Registry Expiry Date: 2024-02-08T09:54:26Z Registrar: GMO Internet, Inc. d/b/a Onamae.com Registrar IANA ID: 49 Registrar Abuse Contact Email: abuse@gmo.jp Registrar Abuse Contact Phone: +81.337709199 Domain Status: ok https://icann.org/epp#ok Name Server: 01.DNSV.JP Name Server: 02.DNSV.JP Name Server: 03.DNSV.JP Name Server: 04.DNSV.JP DNSSEC: unsigned URL of the ICANN Whois Inaccuracy Complaint Form: https://www.icann.org/wicf/ >>> Last update of whois database: 2022-05-12T13:53:54Z <<< info.nagao-kango.com. 1481 IN A 115.144.69.26
1.2. history
04.dnsv.jp 03.dnsv.jp 02.dnsv.jp 01.dnsv.jp GMO Internet,Inc 2022-05-11 (2 days) 2022-05-12 (today) 2 days
"domainName": "nagao-kango.com", "domainType": "added", "createdDateISO8601": "2017-02-08T09:54:26+00:00", "updatedDateISO8601": "2021-11-10T02:05:19+00:00", "expiresDateISO8601": "2024-02-08T09:54:26+00:00", "createdDateRaw": "2017-02-08T09:54:26Z", "updatedDateRaw": "2021-11-10T02:05:19Z", "expiresDateRaw": "2024-02-08T09:54:26Z", "audit": { "createdDate": "2021-12-19T17:14:12+00:00", "updatedDate": "2021-12-19T17:14:12+00:00" }, "nameServers": [ "NS1.SIXCORE.NE.JP|NS2.SIXCORE.NE.JP|NS3.SIXCORE.NE.JP|" ], "whoisServer": "whois.discount-domain.com", "registrarName": "GMO Internet, Inc. d/b/a Onamae.com", "status": [ "ok" ],
$ dig www.nagao-kango.com @ns1.sixcore.ne.jp ; <<>> DiG 9.16.1-Ubuntu <<>> www.nagao-kango.com @ns1.sixcore.ne.jp ;; global options: +cmd ;; Got answer: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 51151 ;; flags: qr aa rd; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1 ;; WARNING: recursion requested but not available ;; OPT PSEUDOSECTION: ; EDNS: version: 0, flags:; udp: 2800 ; NSID: 6e 73 31 2e 73 69 78 63 6f 72 65 2e 6e 65 2e 6a 70 ("ns1.sixcore.ne.jp") ;; QUESTION SECTION: ;www.nagao-kango.com. IN A ;; ANSWER SECTION: www.nagao-kango.com. 3600 IN A 219.94.200.54 ;; Query time: 23 msec ;; SERVER: 219.94.200.232#53(219.94.200.232) ;; WHEN: 木 5月 12 23:23:36 JST 2022 ;; MSG SIZE rcvd: 85