equitycapitalmarket[.]co
“Crypto and Stock Trading with Equity Capital Market”
equitycapitalmarket.co — Contenu indisponible. Résumé des preuves: VirusTotal 15/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, CyRadar); PhishDestroy score 100/100. Bureau d’enregistrement: Sav.com.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain equitycapitalmarket.co was registered on 21 February 2026 through the registrar Sav.com LLC. DNS resolution points to the IPv4 address 185.255.122.10, which is allocated to Virtual Systems LLC in Ukraine (AS30860). The site presents a TLS certificate issued by Let’s Encrypt (R12) and serves HTTP responses with a 302 redirect, indicating an attempt to forward visitors to another location. The page title retrieved from the host reads “Crypto and Stock Trading with Equity Capital Market”, suggesting an investment‑oriented lure. Technology fingerprinting identifies the use of Smartsupp live‑chat widget, OWL Carousel, jQuery UI, jQuery, and support for HTTP/3, all of which are common in low‑cost website deployments. Reputation services flag the domain as extremely high risk.
Scamadviser assigns a trust score of 1 out of 100, Gridinsoft also reports a score of 1 out of 100, and the domain appears on a known phishing blocklist maintained by PhishDestroy. VirusTotal analysis shows that five of ninety‑three scanning engines have flagged the site, reinforcing the malicious assessment. AlienVault OTX lists the address in one threat‑intel pulse, and the domain is present on an additional security blocklist. The MX record is self‑referential (priority 0, host equitycapitalmarket.co), a pattern often used by phishing operators to control email flow. The evidence collectively points to a classic generic phishing operation that likely harvests credentials or financial information by masquerading as a legitimate crypto or stock trading service.
However, the exact payload, phishing landing pages, and victim interaction flow have not been publicly disclosed, leaving the precise modus operandi uncertain. Defenders should block both the domain and its resolving IP at perimeter defenses, monitor DNS queries for the associated nameservers (mars1.freednsdedi.com, mars2.freednsdedi.com), and add the IP to threat‑intel feeds.
Signaux de sécurité
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Technologies · 5 identified
Live chat and visitor recording tool for customer support.
Touch-enabled jQuery plugin for responsive carousel sliders.
Legacy JavaScript library — DOM manipulation and AJAX helpers. Still widely present on older sites.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analyse VirusTotal
Preuves archivées
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of equitycapitalmarket.co · checked Mar 2, 2026
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif