Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 7 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
quartoraxin[.]net
“QuartoraXin - Piattaforma Ufficiale | Trading IA 2025 | Oltre 10.000 Recensioni”
Résumé des preuves
The domain quartoraxin.net was registered on 21 February 2026 through PDR Ltd. d/b/a PublicDomainRegistry.com and is currently taken offline. DNS resolution points to the IP address 172.67.197.3, which belongs to Autonomous System AS13335 operated by Cloudflare, Inc., and is geolocated in the United States. The domain uses Cloudflare’s authoritative name servers clark.ns.cloudflare.com and sloan.ns.cloudflare.com. No TLS certificate is observed for the site, indicating that HTTPS was not offered at the time of analysis.
The page title retrieved from the site reads “QuartoraXin - Piattaforma Ufficiale | Trading IA 2025 | Oltre 10.000 Recensioni,” suggesting a marketing‑oriented landing page that claims official status for a trading platform, yet the content has not been publicly examined because the service is offline. The campaign is classified as brand impersonation targeting the brand “base,” as indicated in the intelligence feed. VirusTotal reports that two of ninety‑three scanning engines flagged the domain, and the domain appears on a single external blocklist. The PhishDestroy service has also listed the domain as blocked.
Gridinsoft assigns a trust score of zero out of one hundred, reinforcing the assessment of malicious intent. While the limited vendor detections and single blocklist entry imply a relatively low level of exposure, the combination of a targeted brand claim, a fabricated official‑sounding title, and the zero‑score trust rating warrants proactive defensive measures. Organizations should add the resolved IP address and the domain name to their deny lists, monitor for any re‑registration or DNS changes, and consider broader threat‑intel sharing to ensure that similar brand‑impersonation patterns are detected early. Further analysis is constrained by the offline status of the site; continuous observation is recommended to capture any future activation or content changes.
Instantané des preuves transmises
- Envoyé
- Entrées du registre
- 1
- ID du dossier
PD-20260107-C254B2- Titre de la page capturée
- Suspected phishing site | Cloudflare
- Artefact PDF
- Preuve PDF
Texte intégral des preuves
Section 3.1 of the Acceptable Use Policy: The domain quartoraxin.net is engaged in phishing activities, which constitute illegal activities and deception, directly violating the AUP.
Section 5 of the Terms of Service: The registrar reserves the right to suspend or terminate services for violations of the AUP, which is clearly applicable in this case due to the fraudulent nature of the domain.
Applicable Laws (PL):
Act of 18 July 2002 on Providing Services by Electronic Means: This law prohibits the provision of services that facilitate illegal activities, including phishing.
Criminal Code of Poland (Kodeks karny), Article 287: This article addresses computer fraud, which encompasses phishing schemes that deceive individuals for financial gain.
Act of 29 August 1997 on the Protection of Personal Data: This legislation includes provisions against unauthorized data processing, which is often a result of phishing attacks.
Regulatory Note: Non-compliance with these policies and laws may result in legal repercussions for your organization, including potential fines and sanctions. Immediate action is required to mitigate liability.
Data Coverage
Renseignements sur la sécurité réseau
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS0 Zero | quartoraxin.net |
malicious | Sinkholed |
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 11/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif