dearqqzz.top
Appeared in the .top zone on Friday, August 28, 2026; by the end of that day the census found redirects elsewhere. Full domain report
Signals, not verdicts. A domain appears here because heuristics matched its name, its infrastructure or the page it served on its first day. Where a model has looked at it, that is shown as an opinion with a confidence, not as a finding. Nothing on this page says a site is malicious. Read the evidence and decide for yourself.
Own one of these names and think the listing is wrong? Tell us and a person will look.
What matched
Model opinions
The domain serves no content of its own; it 302s to the genuine dns.google, so the Google branding and DNS lookup form belong to Google, not this site — no impersonation by the domain itself. The combination of a random-string label on .top, a Chinese budget registrar and Cloudflare NS with a placeholder redirect is a typical holding pattern for a name awaiting later use, worth watching but not yet decisive.
The domain dearqqzz.top redirects to dns.google but the name itself is a brand-squat typosquat of Google DNS services. The redirect pattern combined with the obfuscated domain name (dearqqzz.top) suggests the attacker registered a lookalike to redirect visitors to a cloned or intercepted version of Google Public DNS, positioning it as a redirect intermediary to capture or redirect user interactions. The use of Cloudflare nameservers with a Chinese registrar for a Google impersonation domain, cou
A model looked at the screenshot and page text and wrote what it thought. It can be wrong, and it is not a finding.
What the page looked like on Friday, August 28, 2026

Same data as JSON: /api/zone/domain/dearqqzz.top. This page is not indexed by search engines and does not link to the site it describes.