duquicks[.]com
“duquicks.com”
Analysis indicates that duquicks.com was registered on 21 February 2026 through NiceNIC International Group Co., Limited. The domain resolves to 188.114.97.3, an address owned by AS13335 Cloudflare, Inc. in the United States, and is served via Cloudflare’s DNS (ashton.ns.cloudflare.com, virginia.ns.cloudflare.com). Technical fingerprinting shows a WordPress front‑end backed by MySQL and PHP, with Cloudflare providing HTTP/3 transport. No TLS certificate was observed, meaning the site operated without HTTPS encryption. The page title returned by the server is the literal string “duquicks.com”.
VirusTotal scans report that three of ninety‑five AV engines flagged the domain, and it is listed on a single external blocklist. PhishDestroy has also added duquicks.com to its blocklist. Current monitoring shows the site is offline, and no further HTTP response data are available. The lack of TLS combined with the use of a popular CMS suggests the operators leveraged a readily available web‑hosting stack to reduce development overhead. The presence of three vendor detections on VirusTotal, despite the overall low count, aligns with typical phishing hosting patterns where malicious payloads are identified by heuristics.
The single blocklist entry indicates limited exposure, but the inclusion by PhishDestroy underscores that security communities have already taken action. Because the site is currently offline, active exploitation cannot be observed, however the infrastructure components remain in place and could be re‑activated. Continuous threat‑intel feeds should be consulted for any resurgence, and security teams should audit outbound traffic for connections to 188.114.97.3 or its Cloudflare‑associated ranges. Defenders should continue to block the domain at network perimeter and DNS layers, monitor for any re‑hosting on alternative IPs, and treat any future resolution of duquicks.com as malicious until a thorough re‑assessment confirms otherwise.
भेजे गए प्रमाण का स्नैपशॉट
- भेजा गया
- लेज़र रिकॉर्ड
- 1
- केस आईडी
PD-20260221-075F0A- PDF दस्तावेज़
- PDF प्रमाण
प्रमाण का पूरा पाठ
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
नेटवर्क सुरक्षा इंटेलिजेंस Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | duquicks.com |
malicious | Sinkholed |
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 10/08/2026
पहचान समयरेखा
-
डोमेन स्थिति
पहुँच योग्य → पहुँच योग्य नहीं
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
-
उपलब्धता
पहला संग्रहीत मान: DNS निष्क्रिय
f93a11f87e4d -
उपलब्धता
DNS निष्क्रिय → अज्ञात
67ebc8873c8f -
उपलब्धता
अज्ञात → DNS निष्क्रिय
6dbaaa9c5776 -
उपलब्धता
DNS निष्क्रिय → होल्ड पर
2f7a41719231 -
उपलब्धता
होल्ड पर → DNS निष्क्रिय
f52d526b76a1 -
उपलब्धता
DNS निष्क्रिय → अज्ञात
a5072ce24c61 -
उपलब्धता
अज्ञात → होल्ड पर
be3366ee3f4c
सभी दिखाएँ (9)
-
उपलब्धता
होल्ड पर → अज्ञात
a95bfe28607d -
उपलब्धता
अज्ञात → DNS निष्क्रिय
6dfe9145995c -
उपलब्धता
DNS निष्क्रिय → होल्ड पर
9c68c31e9762 -
उपलब्धता
होल्ड पर → DNS निष्क्रिय
641ed81dc4d5 -
उपलब्धता
DNS निष्क्रिय → अज्ञात
eae7742f7c15 -
उपलब्धता
अज्ञात → होल्ड पर
a29b6bc8a3d6 -
उपलब्धता
होल्ड पर → अज्ञात
7ddac4046c78 -
उपलब्धता
अज्ञात → DNS निष्क्रिय
d0b7046e8c2f -
उपलब्धता
DNS निष्क्रिय → होल्ड पर
4d932afc37c8
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।