MALICIOUS — CRITICAL
darknetlive[.]cc
The domain darknetlive.cc hosted a page titled "Подборка даркнет-площадок" (Russian for "Selection of darknet platforms") and was identified as an impersonation of the brand StarkNet.
- VirusTotal
- 8/93
- Blocklists
- No stored match
- Disponibilidad
- Contenido no disponible · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
darknetlive.cc — Contenido no disponible (HTTP 502). Suplantación de marca: StarkNet; Tipo de estafa: Brand Impersonation. Resumen de las pruebas: VirusTotal 8/93 (ADMINUSLabs, alphaMountain.ai, CRDF, CyRadar, Forcepoint ThreatSeeker); URLQuery 14 alerts; PhishDestroy score 91/100. Registrador: NiceNIC.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
Evidence Analysis
darknetlive.cc Phishing Intelligence Report - PhishDestroy
The domain darknetlive.cc, impersonating StarkNet, is currently taken down. It previously hosted a phishing operation targeting the StarkNet brand.
The domain darknetlive.cc hosted a page titled "Подборка даркнет-площадок" (Russian for "Selection of darknet platforms") and was identified as an impersonation of the brand StarkNet. The site posed as a directory of darknet markets, utilizing the reputation of StarkNet to attract users. The primary threat is that such impersonation sites often direct visitors to phishing pages, malware downloads, or fraudulent marketplaces, leading to credential theft, financial loss, or device compromise.
Technical evidence from VirusTotal shows the domain was flagged by 8 out of 95 vendors, including ADMINUSLabs, alphaMountain.ai, CRDF, CyRadar, and Forcepoint ThreatSeeker, and appeared on 1 blocklist. The domain was registered through NiceNIC International Group Co., Limited, with an IP address of 104.21.12.232 located in the United States, hosted on AS13335 (Cloudflare, Inc.). It was created on 2026-02-21 and used an SSL certificate from Google Trust Services / WE1. The nameservers were arturo.ns.cloudflare.com and lilith.ns.cloudflare.com.
The site is currently DOWN/OFFLINE, with a low trust score of 1/100 from GridinSoft and 36/100 from ScamAdviser, indicating high risk. Despite being offline, the domain remains a threat due to potential reactivation or use in future campaigns. Users should avoid any interaction with this domain and treat it as malicious.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Cobertura de los datos14 recorded checks
Señales de seguridad
Inteligencia de seguridad de red Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | pl27940189.effectivegatecpm.com |
malicious | Sinkholed |
| Quad9 DNS | pl27940189.effectivegatecpm.com |
malicious | Sinkholed |
| DNS4EU | pl27940189.effectivegatecpm.com |
malicious | Sinkholed |
| DNS4EU | realizationnewestfangs.com |
malicious | Sinkholed |
| Quad9 DNS | realizationnewestfangs.com |
malicious | Sinkholed |
| Quad9 DNS | flushpersist.com |
malicious | Sinkholed |
| Hagezi Threat Feed | flushpersist.com |
malicious | Sinkholed |
| Cloudflare DNS | flushpersist.com |
malicious | Sinkholed |
| Cloudflare DNS | preferencenail.com |
malicious | Sinkholed |
| Hagezi Threat Feed | preferencenail.com |
malicious | Sinkholed |
| Quad9 DNS | preferencenail.com |
malicious | Sinkholed |
| Quad9 DNS | weirdopt.com |
malicious | Sinkholed |
| Cloudflare DNS | weirdopt.com |
malicious | Sinkholed |
| DNS4EU | weirdopt.com |
malicious | Sinkholed |
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Latest Classified Outcome 2026-08-09 03:50:30 UTC
Tecnologías · 2 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Análisis de VirusTotal
Evidencias archivadas
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of darknetlive.cc · checked Mar 2, 2026
Datos y informes externosIndependent lookups and source reports
PD-20260216-625EC8 Recipient: abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org Victim safety and official reportingImmediate actions and verified reporting channels
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.