This domain, ionet.quest, is actively flagged as a high-risk phishing site targeting users of the IoTeX Network, a blockchain platform. Registered on July 21, 2026, through Dynadot LLC, the domain remains operational despite appearing on three security blocklists, including PhishDestroy, MetaMask, and SEAL. Infrastructure analysis reveals Cloudflare nameservers (luciana.ns.cloudflare.com and maciej.ns.cloudflare.com) and resolution to IP address 188.114.97.3, a Cloudflare-hosted endpoint commonly used to mask origin infrastructure.
VirusTotal detections are limited, with only 2 of 91 security vendors flagging the domain, suggesting either early-stage detection or evasion techniques. The domain's recent creation, combined with its presence on multiple blocklists and association with a known blockchain brand, indicates a deliberate impersonation attempt. Defenders should treat this domain as malicious and prioritize blocking both the domain and its resolving IP.
Further investigation into SSL certificates, HTTP headers, and potential phishing kits is recommended, though no concrete evidence of these elements is currently available in the provided data. The exact content and functionality of the site remain unanalyzed, but the domain's infrastructure and blocklist status strongly support its classification as an active phishing threat.