orbitalmarkets[.]net
“Orbital Markets”
Zusammenfassung der Beweislage
The domain orbitalmarkets.net was registered on September 17, 2025 through NameCheap, Inc. It currently resolves to the IP address 172.67.175.199, which belongs to the Cloudflare network (AS13335). The site returns an HTTP 200 response over HTTP/3 and presents a TLS certificate issued by Google Trust Services under the WE1 label. The server‑provided page title is “Orbital Markets”. The domain is flagged as an active, high‑risk brand‑impersonation operation targeting the “base” brand and is linked to a cryptocurrency‑related scam.
Infrastructure analysis shows the domain relies on Cloudflare services, as evidenced by Cloudflare Browser Insights and the presence of the authoritative nameservers betty.ns.cloudflare.com and mitch.ns.cloudflare.com. Email routing is managed by Zoho, with MX records pointing to mx.zoho.com (priority 10) and mx2.zoho.com (priority 20). The SSL configuration follows Cloudflare’s edge, offering modern cipher suites and HTTP/3 support.
Reputation data places orbitalmarkets.net on three public blocklists and it is actively blocked by PhishDestroy, MetaMask, and SEAL. VirusTotal scans have flagged the domain by three of ninety‑five security vendors, and the Gridinsoft trust score is 0 out of 100, reinforcing the malicious assessment. These indicators collectively justify the high‑risk rating assigned to the domain.
Defenders should add orbitalmarkets.net to DNS‑based deny lists and configure web filtering to block all HTTP/HTTPS traffic to the domain. Email gateways should enforce strict verification of the Zoho MX records and reject any messages originating from the domain’s IP range. Continuous monitoring of Cloudflare‑associated IP addresses is recommended, as the adversary may pivot to adjacent hosts within the same AS. Incident response teams should treat any interaction with the site as a potential compromise and initiate standard containment and forensic procedures.
Data Coverage
Erkenntnisse zur Netzwerksicherheit
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Blocklistenabdeckung
10 überwachte externe Feeds · gespeicherter Stand 13.08.2026
8 überwachte externe Feeds Kein Treffer
Erkennungszeitleiste
-
VirusTotal
3 → 4
Community-Meldungen
Von 1 Community-Mitglied gemeldet; erstmals gesehen am 19.10.2025
- Gespeicherte Meldungen
- 1
- Eindeutige gemeldete URLs
- 1
Community-Erkenntnisse
1 Community-Meldung
KategorieFAKE_RETURNS
The person involved ask me to invest in crypto, asked for 1000 but I only give 500 ask me to open a trading account that will teach me how to invest in Bitcoin when I check online for that trading platform it was an scam. But the question mark I how police is not able to regulate
Gespeicherte Aufnahme
Domain-Intelligenz
Technische DetailsDNS, TLS-Namen und Zeitstempel
ICANN OVERSIGHT
Akkreditierung und RAA-Kontext
Akkreditierung und RAA-Kontext
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of orbitalmarkets.net · checked Mar 2, 2026
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt