Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@dynadot.com.
The latest stored availability evidence still shows the domain reachable; 9 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
darkseller[.]cc
“darkseller.is”
darkseller.cc — Não verificado. Resumo das evidências: VirusTotal 5/91 (alphaMountain.ai, Chong Lua Dao, Forcepoint ThreatSeeker, Fortinet, SOCRadar); Spamhaus DBL_PHISH; PhishDestroy score 78/100. Registrador: Dynadot.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
The domain darkseller.cc was registered through Dynadot Inc on July 01, 2024 and continues to resolve to the IP address 104.21.83.200, which belongs to Cloudflare’s content‑delivery network. The authoritative nameservers listed for the zone are gabriel.ns.cloudflare.com and princess.ns.cloudflare.com, confirming the use of Cloudflare’s DNS infrastructure. Current intelligence classifies the site as a generic phishing operation; the classification is based on observed activity patterns rather than on any publicly disclosed page content, which has not been analyzed. The domain appears on a single security blocklist and is actively blocked by the PhishDestroy service, indicating that at least one anti‑phishing feed has identified malicious intent.
VirusTotal records show that the domain has been scanned by 91 independent security vendors; none have raised a detection at the time of analysis. While the absence of vendor detections does not constitute a safety guarantee, it demonstrates that the indicator has not yet triggered automated signatures in those engines. No additional public blocklists, Safe Browsing entries, or Open Threat Exchange (OTX) reports are presently associated with the domain. Consequently, the observable evidence consists primarily of registration details, hosting configuration, and the single blocklist entry.
Uncertainty remains regarding the specific payload, credential‑harvesting mechanisms, or targeted brands, as no page title, SSL certificate analysis, or HTTP response data have been disclosed. Defenders should consider adding darkseller.cc to internal deny‑list rules, monitoring DNS queries for the associated Cloudflare IP, and employing request‑level inspection for traffic directed to the domain. Continuous re‑evaluation is advised, given the active status and the potential for future detection updates from scanning services or blocklist providers.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 7 identified
Yandex.Metrica is a free web analytics service that tracks and reports website traffic.
metrika.yandex.com 100% de confiançajQuery UI is a collection of GUI widgets, animated visual effects, and themes implemented with jQuery, Cascading Style Sheets, and HTML.
jqueryui.com 100% de confiançajQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% de confiançaHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% de confiançaCloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% de confiançaCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% de confiançaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% de confiançaAnálise do VirusTotal
Evidências arquivadas
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of darkseller.cc · checked Aug 6, 2026
Evidências e relatórios externos
PD-20260806-C57B67 Recipient: abuse@dynadot.com Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo