darkmattertor[.]link
“DarkMatter Darknet. Security and anonymity for every user”
darkmattertor.link — Контент недоступен (HTTP 502). Тип мошенничества: Generic Phishing. Сводка доказательств: VirusTotal 1/92 (Forcepoint ThreatSeeker); PhishDestroy score 56/100. Регистратор: Hostinger.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Is darkmattertor.link safe to visit? Security teams have raised red flags around this domain because it masquerades as a dark web access portal while hiding behind a newly minted registration and unproven infrastructure. The site is currently classified as an active generic phishing page, meaning criminals may be harvesting login details or payment information under the guise of “secure” dark web services. Users who stumble across this link should treat every interaction as hostile until proven otherwise, because the domain’s age and detection rate suggest it is still in the early stages of a campaign rather than a well-known sinkhole. This domain was flagged after DNS resolution to 184.94.213.209, a hosting provider frequently observed serving short-lived phishing kits. VirusTotal analysis at the time of discovery returned zero detections out of 95 scanners, indicating the page has not yet been widely blacklisted. Registration records show the domain was created on December 05, 2025 through HOSTINGER operations, UAB, and is currently secured with a Sectigo Limited SSL certificate to lend an air of legitimacy. The combination of a fresh domain, zero antivirus coverage, and a single IP address with a history of abuse places the risk level under active investigation rather than dismissed. Anyone who has already visited darkmattertor.link should immediately close the browser tab and run a reputable antivirus scan. Avoid entering any credentials, cryptocurrency wallet seeds, or personal data on the page. If you reused passwords elsewhere, change those credentials immediately and enable multi-factor authentication where possible. Report the URL to your security team or submit it to threat-intel platforms so detection signatures can be updated before this campaign escalates.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 2 identified
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание