The domain luxqantara.com was registered through Ultahost, Inc. on July 12, 2026 and is currently resolving to the IPv4 address 34.111.179.208. The authoritative name servers for the zone are ns1.ultahost.com, ns2.ultahost.com, ns3.ultahost.com, and ns4.ultahost.com. As of the report date, July 30, 2026, the domain remains active and is listed on a single security blocklist. PhishDestroy has already added the domain to its blocklist, indicating that at least one anti‑phishing service considers the site malicious. VirusTotal reports that the domain was scanned by 91 vendor engines; none of the engines returned a positive detection at the time of analysis.
The absence of detections does not constitute evidence of benign behavior, nor does it rule out malicious intent. The available intelligence classifies luxqantara.com as a generic phishing operation, but no further details about the targeted brand, page content, or credential‑harvesting technique have been disclosed. Consequently, the precise attack vector and victim profile remain uncertain. The lack of publicly available page‑title information or SSL certificate details limits the ability to assess the site’s impersonation tactics or its encryption posture. Defenders should continue to monitor the domain for changes in hosting, DNS configuration, or detection status.
Adding luxqantara.com to existing URL filtering rules and updating threat‑intel feeds can reduce exposure. Because the domain is already present on a blocklist, network‑level blocks or DNS‑sinkhole redirects are recommended. Continuous re‑scanning with multi‑engine services such as VirusTotal is advised to capture any future malicious payloads that may be associated with the site. Organizations should also consider sharing any observed indicators of compromise with relevant information‑sharing communities to improve collective detection capability.