coutttsinternational[.]co[.]uk
“Home - Couttts International Bank”
Analysis as of July 24 2026 indicates that the domain coutttsinternational.co.uk was registered on 18 August 2025 through Team Blue Internet Services UK Limited (tag NAMESCO). The domain resolves to the IP address 198.12.93.82, which is announced by AS36352 belonging to HostPapa and geolocated in the United States. No TLS certificate is presented, meaning the site is served only over HTTP. The page title returned from the host is “Home – Couttts International Bank”, suggesting an attempt to impersonate a financial institution, although the content has not been captured.
Reputation services rate the site extremely poorly: Scamadviser assigns a trust score of 1 / 100, Gridinsoft reports 0 / 100, and twelve of ninety‑five VirusTotal scanners flagged the domain as malicious. The domain appears in a single AlienVault OTX pulse and is listed on one public blocklist, currently blocked by the PhishDestroy service. Nameservers are configured to ns1.myruggedserver.xyz, ns10.myruggedserver.xyz, ns11.myruggedserver.xyz and ns2.myruggedserver.xyz, which are not associated with the registrar and may indicate use of a third‑party DNS provider.
The site is presently taken offline, limiting real‑time observation, but the combination of a recent registration, low‑reputation scores, lack of encryption, and alignment with known phishing indicators warrants an elevated risk rating. Defenders should continue to block the domain at perimeter filters, monitor for any re‑hosting on alternative IP ranges, and add the associated IP address to reputation lists. Incident response teams should also review any outbound connections to the listed nameservers for potential command‑and‑control activity, and enforce strict user education regarding unsolicited requests that reference “Couttts International Bank”.
Security Signals
Threat Response Pipeline
Public Blocklist Status
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive