MALICIOUS — CRITICAL
darknetlive[.]cc
The domain darknetlive.cc hosted a page titled "Подборка даркнет-площадок" (Russian for "Selection of darknet platforms") and was identified as an impersonation of the brand StarkNet.
- VirusTotal
- 8/93
- Blocklists
- No stored match
- Ketersediaan
- Konten tidak tersedia · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
darknetlive.cc — Konten tidak tersedia (HTTP 502). Peniruan identitas merek: StarkNet; Jenis penipuan: Brand Impersonation. Ringkasan bukti: VirusTotal 8/93 (ADMINUSLabs, alphaMountain.ai, CRDF, CyRadar, Forcepoint ThreatSeeker); URLQuery 14 alerts; PhishDestroy score 91/100. Registrar: NiceNIC.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Evidence Analysis
darknetlive.cc Phishing Intelligence Report - PhishDestroy
The domain darknetlive.cc, impersonating StarkNet, is currently taken down. It previously hosted a phishing operation targeting the StarkNet brand.
The domain darknetlive.cc hosted a page titled "Подборка даркнет-площадок" (Russian for "Selection of darknet platforms") and was identified as an impersonation of the brand StarkNet. The site posed as a directory of darknet markets, utilizing the reputation of StarkNet to attract users. The primary threat is that such impersonation sites often direct visitors to phishing pages, malware downloads, or fraudulent marketplaces, leading to credential theft, financial loss, or device compromise.
Technical evidence from VirusTotal shows the domain was flagged by 8 out of 95 vendors, including ADMINUSLabs, alphaMountain.ai, CRDF, CyRadar, and Forcepoint ThreatSeeker, and appeared on 1 blocklist. The domain was registered through NiceNIC International Group Co., Limited, with an IP address of 104.21.12.232 located in the United States, hosted on AS13335 (Cloudflare, Inc.). It was created on 2026-02-21 and used an SSL certificate from Google Trust Services / WE1. The nameservers were arturo.ns.cloudflare.com and lilith.ns.cloudflare.com.
The site is currently DOWN/OFFLINE, with a low trust score of 1/100 from GridinSoft and 36/100 from ScamAdviser, indicating high risk. Despite being offline, the domain remains a threat due to potential reactivation or use in future campaigns. Users should avoid any interaction with this domain and treat it as malicious.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Cakupan data14 recorded checks
Sinyal Keamanan
Intelijen Keamanan Jaringan Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | pl27940189.effectivegatecpm.com |
malicious | Sinkholed |
| Quad9 DNS | pl27940189.effectivegatecpm.com |
malicious | Sinkholed |
| DNS4EU | pl27940189.effectivegatecpm.com |
malicious | Sinkholed |
| DNS4EU | realizationnewestfangs.com |
malicious | Sinkholed |
| Quad9 DNS | realizationnewestfangs.com |
malicious | Sinkholed |
| Quad9 DNS | flushpersist.com |
malicious | Sinkholed |
| Hagezi Threat Feed | flushpersist.com |
malicious | Sinkholed |
| Cloudflare DNS | flushpersist.com |
malicious | Sinkholed |
| Cloudflare DNS | preferencenail.com |
malicious | Sinkholed |
| Hagezi Threat Feed | preferencenail.com |
malicious | Sinkholed |
| Quad9 DNS | preferencenail.com |
malicious | Sinkholed |
| Quad9 DNS | weirdopt.com |
malicious | Sinkholed |
| Cloudflare DNS | weirdopt.com |
malicious | Sinkholed |
| DNS4EU | weirdopt.com |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Latest Classified Outcome 2026-08-09 03:50:30 UTC
Teknologi · 2 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analisis VirusTotal
Bukti Terarsip
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of darknetlive.cc · checked Mar 2, 2026
Bukti & Laporan EksternalIndependent lookups and source reports
PD-20260216-625EC8 Recipient: abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org Victim safety and official reportingImmediate actions and verified reporting channels
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.