Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
darkmatteroniontor[.]cc
“DarkMatter Market - Official Darknet Marketplace Onion Links & URLs”
ملاحظة محفوظة
تباين العناوين المرصود
ملخص الأدلة
PhishDestroy analysts flagged darkmatteroniontor.cc as a generic phishing domain currently under investigation due to its active lure targeting unsuspecting users under the seed 3b949d. The domain mimics legitimate onion services, attempting to harvest credentials via a spoofed login portal. No specific drainer kit or branded decoy has been confirmed at this stage, but historical traces suggest generic phishing toolkits are frequently deployed on similar infrastructures.
Technical indicators reveal the domain was registered through Dynadot LLC on September 17, 2025, and resolves to IP 172.67.216.122. Currently, VirusTotal shows zero detections out of 95 engines, and the SSL certificate issued by Google Trust Services suggests an attempt to appear legitimate. As of now, no blocklist entries or Safe Browsing flags have been recorded, leaving this domain in a pre-detection window despite active redirection attempts. This combination of fresh registration, low detection coverage, and deceptive SSL issuance creates a high-risk decoy awaiting widespread compromise.
This domain remains active with a status of ongoing investigation. Immediate defensive actions include adding darkmatteroniontor.cc to blocklists, monitoring DNS resolutions, and alerting end-users to avoid interaction. While risk is under assessment, the low VT score (2/95) and absence of network blocklisting indicate a potential window for exploitation before automated detection matures. Users accessing this domain should treat all inputs as compromised and initiate account recovery procedures if credentials were entered. Remaining risk hinges on the speed of SIEM integration and signature deployment.
لقطة الأدلة المرسلة
- أُرسل
- سجلات الدفتر
- 1
- معرّف القضية
PD-20260510-CD35FC- عنوان الصفحة الملتقطة
- DarkMatter Market - Official Darknet Marketplace Onion Links & URLs
- ملف PDF
- دليل PDF
الأساس القانوني
النص الكامل للدليل
Policy Violations: Acceptable Use forbids illegal content; Spam & Abuse Policy prohibits phishing, fraud, malware; Dynadot may disable DNS and suspend domains
Applicable Laws: CFAA 18 U.S.C. §1030, Wire Fraud 18 U.S.C. §1343, CAN-SPAM Act
Data Coverage
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | darkmatteroniontor.cc |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
التقنيات
حُدّدت ٣ تقنيات عالية الثقة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of darkmatteroniontor.cc · checked May 11, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب