# itruustcappitalloginn.webflow.io — MALICIOUS > Stay alert! The domain itruustcappitalloginn.webflow.io is actively used in credential phishing scams. Avoid entering sensitive info. ## Summary PhishDestroy identifies itruustcappitalloginn.webflow.io as a high-risk credential phishing domain designed to steal login credentials. This classification stems from its impersonation tactics and suspicious domain naming. The domain resolves to IP address 104.18.36.248 and is flagged by 19 out of 95 security vendors on VirusTotal, confirming malicious intent. Its hosting infrastructure via Webflow adds a layer of anonymity common in phishing campaigns. Currently active, the domain should be blocked and monitored closely. PhishDestroy recommends immediate mitigation steps to prevent credential theft and further user exposure to this threat, citing the unique seed 024dce for tracking purposes. ## Threat Details - Verdict: MALICIOUS - Site status: alive (HTTP 200) - Page title: I Trust Capital Login: Your Key to a Hassle-Free Investment Journey ## Domain Intelligence - Registrar: REGISTRAR_NOT_FOUND - IP: 104.18.36.248 - Nameservers: NS_NOT_FOUND ## Detection Status - VirusTotal: 19 vendors flagged Vendors: ["ADMINUSLabs", "BitDefender", "CyRadar", "ESET", "Emsisoft", "Forcepoint ThreatSeeker", "Fortinet", "G-Data", "Gridinsoft", "Kaspersky", "Lionic", "MalwareURL", "Netcraft", "OpenPhish", "Sophos", "Trustwave", "VIPRE", "Webroot", "alphaMountain.ai"] - Google Safe Browsing: clean - Blocklists: 1 hits Lists: ["PhishDestroy"] ## Live Page Content - Meta description: Investing for your future has never been this simple. Introducing the I Trust Capital Login – your gateway to streamlined and secure investment management. ### Page Text I Trust Capital Login: Your Key to a Hassle-Free Investment Journey ### External Scripts - https://d3e54v103j8qbb.cloudfront.net/js/jquery-3.5.1.min.dc5e7f18c8.js?site=64e6f655588b7012d7fc006d - https://cdn.prod.website-files.com/64e6f655588b7012d7fc006d/js/webflow.24a563ff7.js ### External Links - https://ameddingpersusan.com/1c4320c1-ba33-4d30-a5ee-a991da0a3b4f ## Evidence - Screenshot: https://urlscan.io/screenshots/019cc5a2-be26-70cc-a05b-d7cbe3b38690.png - Cloudflare Radar: https://radar.cloudflare.com/scan/3d98886f-3cdb-4734-ab12-1b8a88419562 - PhishDestroy: https://phishdestroy.io/domain/itruustcappitalloginn.webflow.io/ ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/itruustcappitalloginn.webflow.io/ Last updated: 2026-03-14