Analysis of bitprimecore.net shows a domain registered through PDR Ltd. d/b/a PublicDomainRegistry.com on December 09, 2025. The domain is served by Cloudflare name servers (chad.ns.cloudflare.com and shubhi.ns.cloudflare.com) and resolves to the IP address 104.21.62.232, a Cloudflare edge node commonly used for content delivery and also for malicious hosting. The domain appears on three independent security blocklists and is actively blocked by PhishDestroy, MetaMask, and SEAL, indicating that multiple threat‑intelligence feeds have identified it as malicious.
VirusTotal reports that the domain has been scanned by 91 antivirus or URL‑reputation vendors; none of the vendors have issued a detection at the time of the scan. While a zero‑detection count does not constitute evidence of safety, it does suggest that the domain may be employing techniques that evade static analysis or that the payload is delivered dynamically. No public SSL certificate details, HTTP status codes, Safe Browsing verdicts, or OTX identifiers were provided, and the page title and content have not been publicly disclosed, leaving the exact phishing lure unknown.
Given the combination of recent registration, Cloudflare hosting, blocklist presence, and active blocking by multiple anti‑phishing services, the domain should be treated as high‑risk. Defenders are advised to add bitprimecore.net to internal deny lists, monitor DNS queries for the domain, and ensure that any email or web traffic directed to it is blocked or sandboxed. Continuous monitoring for changes in detection vendor scores or new blocklist listings is recommended to maintain up‑to‑date protection.