zestcore[.]quest
Перевірка домену zestcore.quest на фішинг і безпеку
“Shade Network — The Private Execution Layer”
zestcore.quest — Контент недоступний (HTTP 502). Уособлення бренду: Discord; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 2/93 (alphaMountain.ai, Gridinsoft); PhishDestroy score 56/100. Реєстратор: NameCheap.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, zestcore.quest, is confirmed to engage in brand impersonation targeting Discord, a widely used communication platform. Analysis indicates the site masquerades as an official Discord-related service, likely to distribute malicious payloads, harvest credentials, or facilitate unauthorized transactions. The page title, 'Shade Network — The Private Execution Layer,' suggests an attempt to lure users into interacting with fraudulent cryptocurrency or private messaging services, exploiting trust in the Discord brand to bypass user scrutiny.
Infrastructure analysis reveals the domain was registered on October 15, 2025, through NameCheap, Inc., and resolves to the IP address 172.67.188.235. Detection metrics show limited but concerning coverage: 2 out of 95 security vendors on VirusTotal flagged the domain as malicious. Additionally, the domain appears on three security blocklists, and its Gridinsoft trust score is 0/100, indicating a complete lack of legitimacy. The domain has since been taken offline, but residual risk remains for users who may have interacted with it prior to its deactivation.
Users who visited zestcore.quest should immediately revoke any active sessions or permissions granted to the site, particularly those related to cryptocurrency wallets or authentication tokens. If credentials were entered, they must be changed across all platforms where they were reused. Devices used to access the domain should undergo a full security scan to detect potential malware or unauthorized modifications. Network logs should be reviewed for connections to 172.67.188.235 or related domains, and any suspicious activity should be reported to relevant security teams for further investigation.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога