# capcut.net.pk — SUSPICIOUS > Capcut.net.pk is an active phishing domain targeting users seeking CapCut APK. Stay cautious and avoid downloading from this site to protect your data. ## Summary PhishDestroy identifies capcut.net.pk as an active generic phishing domain exploiting the popularity of CapCut APK downloads. This campaign aims to trick users into downloading potentially harmful software by offering a 'watermark-free' CapCut version, putting personal information and device security at risk. Although the overall threat level is assessed as low, users should remain vigilant to avoid falling victim to this deceptive offer. The domain capcut.net.pk was registered recently on March 11, 2026, and resolves to the IP address 104.21.52.184. Despite only one out of 95 VirusTotal security vendors flagging this domain, it appears on three security blocklists, indicating suspicious activity. The page title mimics legitimate CapCut branding to lure users, but the domain's infrastructure and reputation raise concerns about its legitimacy. Users are advised not to download apps or files from capcut.net.pk and to rely only on official app stores or trusted sources for software downloads. Enabling security solutions and verifying URLs can help prevent compromise. If users have interacted with this domain, they should monitor accounts for unusual activity and consider scanning their devices for malware to mitigate any potential exposure. ## Threat Details - Verdict: SUSPICIOUS - Site status: alive (HTTP 200) - Page title: CAPCUT - Download CapCut Apk v14.0.0 Without Watermark 2025 - CapCut ## Domain Intelligence - Registered: 2026-03-11 15:07:01 - IP: 104.21.52.184 - IP Country: US - IP City: San Francisco - IP Org: AS13335 Cloudflare, Inc. - Nameservers: ["kobe.ns.cloudflare.com", "sreeni.ns.cloudflare.com"] - SSL Issuer: Google Trust Services / WE1 ## Detection Status - VirusTotal: 1 vendors flagged Vendors: ["SOCRadar"] - Google Safe Browsing: clean - Blocklists: 3 hits Lists: ["PhishDestroy", "MetaMask", "SEAL"] ## Evidence - Screenshot: https://urlscan.io/screenshots/019ce201-617e-77cb-977f-5e0f091e0585.png - PhishDestroy: https://phishdestroy.io/domain/capcut.net.pk/ - LLM endpoint: https://phishdestroy.io/domain/capcut.net.pk/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/capcut.net.pk/ Last updated: 2026-03-19