darkmatter-marketdarknet[.]com
“DarkMatter Market | Dark Matter Darknet | Dark Matter Onion”
darkmatter-marketdarknet.com — Прикритий · доступний. Зведення доказів: VirusTotal 13/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); cloaking observed; PhishDestroy score 100/100. Реєстратор: NiceNIC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy has identified darkmatter-marketdarknet.com, a generic phishing domain designed to impersonate the DarkMatter Market darknet marketplace. This domain is currently offline but was active and posed a significant threat to users seeking darknet services. The domain's title, 'DarkMatter Market | Dark Matter Darknet | Dark Matter Onion,' indicates an intent to deceive visitors into believing they are accessing a legitimate darknet marketplace, likely to harvest credentials or cryptocurrency.
Technical analysis reveals that darkmatter-marketdarknet.com was flagged by 4 out of 95 VirusTotal security vendors, indicating moderate detection. The domain was created on May 15, 2026, and registered through NICENIC INTERNATIONAL GROUP CO., LIMITED. It resolves to IP address 188.114.97.3, which is associated with Cloudflare's infrastructure. The SSL certificate was issued by Google Trust Services (WE1). AlienVault OTX shows the domain is included in 1 threat intelligence pulse, and it appears on 1 security blocklist. These indicators suggest the domain was deliberately set up for malicious purposes, though its offline status may limit current risk.
Given the elevated risk level and the domain's association with phishing activity, users should avoid any interaction with darkmatter-marketdarknet.com or similar domains. PhishDestroy recommends that organizations block the domain and IP address 188.114.97.3 on network security appliances. Users who may have visited the site should monitor for credential theft or unauthorized transactions, particularly involving cryptocurrency wallets or darknet marketplace accounts. Reporting the domain to threat intelligence platforms can help protect others from similar attacks.
Розвіддані з мережевої безпеки Registrar context
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-17 02:41:31 UTC
Аналіз VirusTotal
Аналіз конфігурації сайту
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога