Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
8d86cdef88[.]nxcli[.]io
“8d86cdef88.nxcli.io”
Сохранённое обнаружение
Обнаружена маскировка
- Тип маскировки
content_divergence- Оценка маскировки
- 1/6
Сводка доказательств
This report analyzes the domain 8d86cdef88.nxcli.io. The page title is identical to the domain name, indicating the site does not present a branded front or impersonate a known entity. Given the domain was created recently, on 2026-02-21, and is currently offline, it likely represents a generic or placeholder domain that may have been intended for malicious use, such as hosting phishing pages, malware, or command-and-control infrastructure. The primary threat posed is the potential for serving malicious content if reactivated.
Technical evidence shows the domain was flagged by 8 out of 95 VirusTotal vendors, including alphaMountain.ai, Cluster25, CRDF, Emsisoft, and Gridinsoft. The domain is registered with Tucows Domains Inc. and resolves to IP address 8.36.41.114, which is hosted in the United States by AS36444 Liquid Web, L.L.C. The SSL certificate is issued by Let's Encrypt / R13, and nameservers are adi.ns.cloudflare.com and vicky.ns.cloudflare.com. The domain is listed on 1 blocklist and has a GridinSoft trust score of 0/100, confirming a high-risk assessment.
The domain is currently down or offline, which may indicate it has been taken down or is temporarily inactive. The risk level is high based on the multiple vendor detections, low trust score, and recent creation date, despite the current inactive status. Users should avoid any interaction with this domain if it becomes active again.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260216-992288- Заголовок сохранённой страницы
- 8d86cdef88.nxcli.io
- PDF-файл
- PDF с доказательствами
Правовое основание
Полный текст доказательств
Section 3.1 of the Acceptable Use Policy: The domain 8d86cdef88.nxcli.io is engaged in phishing activities, which directly contravenes the prohibition against illegal activities and fraud.
Section 4.2 of the Terms of Service: The registrar reserves the right to suspend or terminate services for violations, and the ongoing use of this domain for deceptive practices warrants immediate action.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA) - 18 U.S.C. § 1030: Prohibits unauthorized access to computers and networks, which is applicable in cases of phishing.
Wire Fraud Statute - 18 U.S.C. § 1343: Addresses schemes to defraud individuals through electronic communications, including phishing schemes.
CAN-SPAM Act - 15 U.S.C. § 7701: Regulates commercial email and prohibits misleading headers and deceptive subject lines, which are often utilized in phishing attacks.
Regulatory Note: Failure to take immediate action against this domain may expose your organization to legal liability and regulatory scrutiny. Compliance with your AUP and TOS is essential to mitigate risks associated with facilitating illegal activities.
Data Coverage
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | 8d86cdef88.nxcli.io |
malicious | Sinkholed |
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 13.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
VirusTotal
8 → 16
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of 8d86cdef88.nxcli.io · checked Mar 2, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание