itrrustcaptllogin[.]webflow[.]io
“iTrustCapital Login: Access Your Self-Directed IRA Account”
Observation enregistrée
Contraste de titres observé
Résumé des preuves
This domain, itrrustcaptllogin.webflow.io, is a credential phishing site designed to steal login credentials for self-directed IRA accounts. The page mimics the legitimate iTrustCapital login portal, tricking users into entering sensitive financial information such as usernames, passwords, and potentially two-factor authentication codes. Credential phishing of this nature can lead to unauthorized account access, financial theft, and identity fraud, particularly targeting individuals managing retirement funds through digital platforms. Analysis indicates the domain was registered on March 04, 2026, through MarkMonitor, Inc., a registrar commonly used for both legitimate and malicious domains. The site resolves to IP address 104.18.36.248, hosted on Cloudflare infrastructure (AS13335), which is frequently leveraged to obscure malicious activity. Security vendors have flagged the domain, with 19 out of 95 engines on VirusTotal detecting it as malicious. Additionally, the domain appears on one security blocklist and has been taken offline following reports of fraudulent activity. If you visited itrrustcaptllogin.webflow.io or entered any credentials, immediate action is required. First, change the passwords for your IRA and any other financial accounts, especially if you reuse credentials. Enable multi-factor authentication where available to add an extra layer of security. Monitor your accounts for unauthorized transactions or suspicious activity, and report any anomalies to your financial institution. Consider placing a fraud alert or credit freeze with major credit bureaus to prevent identity theft. Finally, scan your device for malware to ensure no additional threats were introduced during the visit.
Data Coverage
Renseignements sur la sécurité réseau
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | itrrustcaptllogin.webflow.io |
malicious | Sinkholed |
| DNS4EU | itrrustcaptllogin.webflow.io |
malicious | Sinkholed |
| OpenDNS | itrrustcaptllogin.webflow.io |
phishing | Phishing Block |
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 11/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
VirusTotal
0 → 20
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Technologies
3 technologies identifiées avec une forte confiance
Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of itrrustcaptllogin.webflow.io · checked Mar 4, 2026
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif