darkmatter-link[.]org
“DarkMatter — The Encrypted Darknet Digital Horizon”
Résumé des preuves
Analysis of darkmatter-link.org shows a recently registered domain (created 21 Feb 2026) hosted on Cloudflare’s network (AS13335) resolving to 104.21.46.175, an IP located in the United States. The domain is listed on a single security blocklist and is actively blocked by the PhishDestroy service. Registration was performed through NiceNIC International Group Co., Limited, and the authoritative nameservers are ben.ns.cloudflare.com and beth.ns.cloudflare.com, indicating use of Cloudflare’s DNS service. TLS termination is provided by Google Trust Services under the “WE1” certificate, confirming a valid HTTPS endpoint.
The public page title, “DarkMatter — The Encrypted Darknet Digital Horizon,” does not correspond to a known legitimate brand, and the site’s front‑end stack comprises Tailwind CSS, Vue.js, Cloudflare Browser Insights, and HTTP/3, all of which are common components for modern web applications but provide no indication of malicious functionality. VirusTotal records show that two of ninety‑three scanned engines flagged the domain, suggesting the presence of at least one detectable malicious element. Conversely, Gridinsoft assigns a trust score of zero out of one hundred, reflecting a high confidence classification as unsafe. Available evidence confirms the domain’s classification as generic phishing, yet the specific phishing lure, targeted credentials, or payload delivery mechanisms have not been disclosed.
Continuous monitoring of the IP address, DNS records, and any changes in detection counts is advised. Defenders should block the domain at perimeter filters, update URL reputation lists, and consider adding the IP to deny‑list rules. Because the site is currently offline, further collection of page content or network traffic would be required to refine the attribution and to identify any post‑compromise activity.
Instantané des preuves transmises
- Envoyé
- Entrées du registre
- 1
- ID du dossier
PD-20260214-275EA7- Titre de la page capturée
- DarkMatter — The Encrypted Darknet Digital Horizon
- Artefact PDF
- Preuve PDF
Texte intégral des preuves
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
Data Coverage
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 10/08/2026
10 sources externes surveillées Aucune correspondance
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of darkmatter-link.org · checked Mar 2, 2026
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif