Ir al informe de seguridad
Checked 09/08/2026 Ref 4933E31B

MALICIOUS — CRITICAL

capax[.]cl

3 of 92 security engines flagged the domain; 2 public blocklists listed it (MetaMask, SEAL); the latest stored check returned HTTP 200.

98/100 evidence score · Critical
VirusTotal
3/92
Blocklists
2 · MetaMask, SEAL
Disponibilidad
Encubierto · accesible · HTTP 200
Report / Add Evidence Appeal this listing
No capture stored

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Este dominio ha sido señalado como malicioso
Motores de seguridad que informan una detección: 3. Listas de bloqueo públicas que informan una coincidencia: 2. Tenga extrema precaución: no ingrese credenciales o información personal.
Jump to section
Resumen del informe

capax.cl — Encubierto · accesible (HTTP 200). Resumen de las pruebas: VirusTotal 3/92 (Gridinsoft); 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 98/100.

El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.

Evidence Digest

Ref 4933E31B

capax.cl is classified critical with an evidence score of 98/100. 3 of 92 security engines flagged the domain; 2 public blocklists listed it (MetaMask, SEAL). Registered 14 May 2026, hosted on 69.6.225.73 (Oracle Corporation, CL). The latest stored check on 9 Aug 2026 returned HTTP 200.

Stored generated summary (templated)cerebras · 12/07/2026

Retained for the record. This text repeats stored detection facts and is not presented as authored analysis.

The domain capax.cl was registered on May 14, 2026 and remains active as of the report date. Automated classification assigns it a high‑risk generic phishing label. HTTP requests to the host return a 406 status code, a pattern frequently employed to disrupt generic crawlers while presenting a tailored page to targeted victims.

Infrastructure analysis reveals that capax.cl resolves to IP address 69.6.225.73, an address located in Chile and associated with Oracle Corporation network assets. The service presents a valid TLS certificate issued by Let’s Encrypt (R13), enabling encrypted connections that may lend legitimacy to the phishing page. The domain is listed on three public blocklists and carries a Gridinsoft trust score of 0 / 100, confirming its reputation as malicious.

Threat intelligence corroborates the malicious profile. AlienVault OTX references the domain in a single pulse, and three independent blocklists have recorded it. VirusTotal scans show that three out of ninety‑five security vendors flag the domain, suggesting partial detection and highlighting the possibility of additional undetected capabilities given the recent registration date. The limited vendor count does not diminish the high‑risk rating.

Defensive recommendations include immediate DNS blocking of capax.cl and the addition of its resolved IP 69.6.225.73 to network deny lists. Monitoring outbound TLS connections for the specific Let’s Encrypt certificate fingerprint can provide early alerts of attempted access. Where possible, sinkholing the domain or redirecting traffic to a safe landing page will disrupt the phishing campaign. Continuous re‑evaluation is advised as further indicators may surface.

VirusTotal
VirusTotal
3 det.
OTX references
Certificado TLS
Caducado o no verificado -27d
Edad
3 mo New
Estado observado
Encubierto · accesible 200
PhishDestroy
DestroyList
En lista
Cobertura de los datos12 recorded checks
VirusTotal 3 / 92 URLQuery no comprobado PhishStats no comprobado OTX 1 community reference CF Radar no data URLScan capture not submitted URLScan verdict veredicto no disponible Bloqueos de DNS no comprobado TLS Caducado o no verificado WHOIS 3 mo old Captura de pantalla no capturado Cadena de redireccionamientos no sondeado

Proceso de respuesta ante amenazas Pipeline

Descubrimiento
Checks
Reports
Disponibilidad
7/9

Estado de la lista de bloqueados pública

Inteligencia de dominios

Dominio
Servidor / ASN Apache · AS31898 Oracle Corporation
Reputación de IP abuse score 0/100 0 reports checked 13/07/2026
Dirección IP 69.6.225.73 CL
UbicaciónCL Curauma, CL
RedAS31898 · Oracle Corporation
RegistroCreado 14/05/2026 (86d · New)
Cloaking Cloaking Detected Content divergence · score 1/6
alive_content: raw=ok; http=200; via=https_proxy; server=nginx/1.29.8
server: nginx/1.29.8 title: Luis Canales - My WordPress Blog
checked 09/08/2026
Estado HTTP200
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
Primera detección13/06/2026
TLS Fingerprint
TLS Observationvalid from 14/04/2026scanned 19/05/2026
Favicon Hash
Denunciar este dominio Envía pruebas y ayuda a proteger a los demás

Análisis de VirusTotal

3 / Los proveedores de seguridad de 92 marcaron este dominio
View on VT
Last analyzed Previous stored snapshot: 1 detection
Gridinsoft
Datos y informes externosIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.

Europol
Encuentre el canal de denuncia oficial para su país de la UE
National police directory
¡Cuidado con los estafadores que se hacen pasar por empresas de recuperación de datos! Los delincuentes pueden volver a contactar a las víctimas haciéndose pasar por investigadores, abogados o agentes de recuperación. No pague tarifas por adelantado ni comparta credenciales. Más información sobre el fraude en las ayudas de recuperación →

Informa a las autoridades locales

Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.

directorio de 97 países
Borrador asistido por IA: el proveedor de IA procesa los detalles del incidente Revíselo y envíelo usted mismo
Incrustar este informeRead-only HTML widget
HTML · IFRAME

Incrustar este informe

Comparte esta información sobre amenazas en tu página web o blog

embed.html
<iframe
  src="https://phishdestroy.io/es/embed/domain/capax.cl"
  title="PhishDestroy threat report for capax.cl"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>