quai-nft[.]io
“Quai”
Zusammenfassung der Beweislage
The domain quai-nft.io was registered on February 21, 2026 through Dynadot LLC and is currently listed as offline. Technical resolution points to the IP address 188.114.97.3, which belongs to AS13335 Cloudflare, Inc. and is geolocated in the United States. The domain is served by the Cloudflare nameservers julian.ns.cloudflare.com and love.ns.cloudflare.com, but no SSL certificate is presented, indicating that encrypted HTTPS connections are not available. The page title returned from the site is "Quai," and the intelligence classification identifies the activity as an NFT scam, specifically a crypto drainer.
The domain appears on three public security blocklists and has been explicitly blocked by three threat‑mitigation services: PhishDestroy, MetaMask, and SEAL. According to Gridinsoft, the trust score for the domain is 0 out of 100, reflecting maximal suspicion. VirusTotal analysis shows that 14 out of 93 security vendors have flagged the domain as malicious, reinforcing the detection consensus.
While the site is offline, the combination of a newly created domain, lack of TLS, low trust score, multiple blocklist listings, and vendor detections provides strong evidence of malicious intent. Defenders should continue to block the domain at network perimeter and endpoint layers, monitor the IP address for any future activation, and incorporate the domain and its associated IP into threat‑intel feeds. Ongoing observation is advised in case the operator re‑hosts the payload on a different infrastructure, as the underlying registration and hosting patterns may be reused.
Data Coverage
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Blocklistenabdeckung
10 überwachte externe Feeds · gespeicherter Stand 13.08.2026
Erkennungszeitleiste
-
Cloudflare Radar
Cloudflare-Radar-Scan gespeichert · Scan öffnen
VirusTotal-Analyse
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt