Post
Topic
Board Services
Re: [OPEN] eXch Anti-Phishing Campaign
by
Haunebu
on 26/03/2025, 16:55:19 UTC
Could you share how you reached to the conclusion that centralnic.com is behind nic.cd?  I did report using that form, but I just want to know, because I could not find anything related. 
Just checked again and it looks like Google AI confused me due to which I made a mistake here. They aren't related and you are right.

Why do you report to a web hosting service?  Is it related with the company "nic.cd", or do you suspect they sell web hosting services to exch[.]cd? 
You are wrong here. SCPT is the registrar.

eXch support made it explicitly clear that it has to be reported to the Registrar.

If you report to the host and they take down the server, 'Considering takedown request was approved,' the person/people behind the phishing domain can choose another host for the same domain and continue their work, all they have to do is copy the files to the server of another host. (Suspending the domain should be a priority, not the server of the host.)
SCPT is the registrar. Check properly.

https://www.eurodns.com/whois-search/cd-domain-name

Also, hosting providers do effectively take down scam domains sometimes. Your logic about them choosing a new host to continue their dirty work is accurate, but they could just as well choose a new registrar, hosting provider with that backup. Think!