Your site is down, but only for some people.
Quad9 is a free DNS service (9.9.9.9) that refuses to look up domains on its blocklist. For anyone whose device, router or network uses it, your domain looks as if it doesn't exist: the browser says “This site can't be reached”, while the site loads fine everywhere else. Quad9's Blocked Domain Tester shows whether it blocks the domain and which threat-intelligence providers listed it. Quad9 removes a domain on request, through its contact form or [email protected].
No warning page, no explanation, just a site that seems down for one customer and fine for the next. A free scan tells you whether Quad9 blocks the domain, whether Cloudflare's DNS does too, and which other vendors list it.
Free, no signup. Checks Quad9, Cloudflare's 1.1.1.1 for Families and the other vendors we read.
| What visitors see | “This site can't be reached”, as if the domain didn't exist. In Chrome often with DNS_PROBE_FINISHED_NXDOMAIN. No warning page. |
|---|---|
| Who sees it | People whose computer, phone, router or network uses Quad9 (9.9.9.9). Everyone else gets your site. |
| Why | A threat-intelligence provider whose feed Quad9 uses listed the domain. Quad9's tester names it. |
| How to check | quad9.net/result, or our free scan, which also checks Cloudflare's DNS and the other vendors. |
| Who removes it | Quad9, on request: its contact form, reason “Ask us to REMOVE a domain from our BlockList”, or [email protected]. |
| What €39 buys | The Quad9 request, written and emailed for you with your address as Reply-To, and a request to every other vendor that lists the domain. |
If the scan shows Quad9 and nothing else, you don't need us. Quad9's contact form is free. Follow the steps below and keep your €39.
If antivirus engines, web filters or Cloudflare's DNS list the domain too, they keep blocking it after Quad9 removes it. Each has its own inbox or form and wants its own wording. That part is what we do.
- 01
Confirm it's Quad9.
Open quad9.net/result and enter the domain. “Blocked”, with the names of the threat-intelligence providers that listed it, means Quad9. If it isn't blocked there, the problem is somewhere else: another DNS filter, the hosting, or the domain's own DNS records.
- 02
Remove the cause, or confirm there was none.
Hacked: remove the injected pages or code and close the way in, usually an outdated plugin or a stolen password. Never hacked: look at what the listing provider could have seen, such as a login page that resembles another brand's. We don't do this step and we don't verify it.
- 03
Ask Quad9 to remove the domain.
Use Quad9's contact form with the reason “Ask us to REMOVE a domain from our BlockList”, or email [email protected]. Give the domain, what was wrong and what changed. Quad9 doesn't publish how long a review takes.
- 04
Ask the other lists at the same time.
The providers the tester names, and antivirus engines and web filters, keep their own lists and don't follow Quad9. Each has its own inbox or form and its own wording. That part, and the Quad9 email, is what we do for €39.
// step 2: cleaning a hacked website · step 4: Cloudflare's DNS blocking it too?
After you pay €39, once, for this domain: we re-scan it, cache ignored, and send a separately written plain-text removal request to every vendor that takes one by email, Quad9 included, within 48 hours and in practice within the hour, with your address as Reply-To. Form-only vendors, Cloudflare among them, become dashboard cards. Replies go to your inbox, not ours.
It does not clean malware. It guarantees the dispatch, not the outcome. If the scan we run right after payment finds no vendor flagging your domain, we refund the full €39 automatically. No subscription, no account.
// free scan · payment only if vendors flag you and there are requests to send
pricing · refund policy · the vendors and how each is contacted
| Day 0 | 12 vendors flagging. Payment, re-scan, 12 separately written requests sent over one hour. |
|---|---|
| Day 3 | 8 of 12 vendors no longer returned the domain. |
| Day 7 | Still 8 of 12. The same eight. |
| Day 15 | All 12 cleared. The verdicts we read were last updated on day 15, so that is the latest day by which every vendor had cleared. |
One dispatch is one dispatch: a case, not a rate. It was a false-positive flag on a site that had never been hacked, which is not the situation most people arrive here in. Vendors re-scan when they review, so a hacked site has to be clean before any of this moves. The customer's own account of that order, in his words:
“ESET flagged our client's website even though it had never been hacked. I wasn't sure whether I could trust an online service with this, but I decided to give it a try. Two weeks later, all 12 vendors that had flagged the site, including ESET, had cleared it.”
// full readings: the case study · in our September 2026 data the median flagged domain carried 11 listings, Google's among them: the report, vendor by vendor
Their phone, laptop, router or office network uses Quad9 to look up addresses, and Quad9 answers that your domain doesn't exist. Yours uses a different service. To see whether someone is on Quad9, they can open on.quad9.net.
Quad9 combines feeds from several threat-intelligence providers. Its Blocked Domain Tester at quad9.net/result lists the ones that named your domain.
No. Quad9 never shows a page; the browser just can't find the site. A page saying “Sorry, you have been blocked” comes from Cloudflare's firewall on your own site.
Quad9 doesn't publish a time, and we don't promise one. The tester shows the current state whenever you check it.
Yes, when the scan shows Quad9 blocking the domain: a separately written plain-text request goes to Quad9 by email, with your address as Reply-To, so the answer comes to you. The €39 covers it and every other vendor that lists the domain. If Quad9 is the only one, the contact form is free and you don't need us.
// related: Cloudflare blocking your website · blocked by an antivirus or firewall · a red warning instead of the site