d26hpdecvhwn5s[.]cloudfront[.]net
“Capital One | Credit Cards, Checking, Savings & Auto Loans”
d26hpdecvhwn5s.cloudfront.net — असत्यापित. घोटाले का प्रकार: Credential Phishing. साक्ष्य सारांश: VirusTotal 16/91 (alphaMountain.ai, Bfore.Ai PreCrime, CyRadar, Ermes, ESET); URLQuery 4 alerts; CF Radar malicious; PhishDestroy score 95/100. रजिस्ट्रार: MarkMonitor.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Analysis of the domain d26hpdecvhwn5s.cloudfront.net indicates it is actively serving a high-risk phishing page targeting users of a major financial institution. The page title, 'Capital One | Credit Cards, Checking, Savings & Auto Loans,' explicitly matches the branding of Capital One, suggesting an intent to deceive visitors into believing they are accessing legitimate banking services. The domain is hosted on Amazon CloudFront infrastructure, resolving to IP address 13.32.121.92, and employs an SSL certificate issued by Amazon, which may lend a false sense of security to unsuspecting users. The domain appears on three security blocklists and is flagged by 17 of 95 security vendors in a recent scan, confirming its malicious classification. It is registered through MarkMonitor Inc., a legitimate domain registrar often used for both legitimate and malicious purposes. Technologies detected on the domain include Amazon Web Services, Amazon S3, Snowplow Analytics, and HSTS, which are consistent with modern web hosting but do not mitigate the phishing risk. The Gridinsoft trust score of 0/100 further supports the assessment of high risk. As of July 12, 2026, the domain remains active and unmitigated. Defenders should immediately block access to this domain at the network level and monitor for any attempts to interact with it from internal systems. End users who may have visited the site should be advised to change credentials for any accounts accessed after exposure and enable multi-factor authentication where possible. The exact content and functionality of the phishing page have not been fully analysed, so additional indicators of compromise may emerge as further investigation is conducted.
नेटवर्क सुरक्षा इंटेलिजेंस
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | d26hpdecvhwn5s.cloudfront.net |
malicious | Sinkholed |
| Hagezi Threat Feed | d26hpdecvhwn5s.cloudfront.net |
malicious | Sinkholed |
| DNS4EU | d26hpdecvhwn5s.cloudfront.net |
malicious | Sinkholed |
| Quad9 DNS | d26hpdecvhwn5s.cloudfront.net |
malicious | Sinkholed |
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
तकनीकें · 5 identified
Amazon Web Services (AWS) is a comprehensive cloud services platform offering compute power, database storage, content delivery and other functionality.
aws.amazon.com 100% विश्वासSnowplow is an open-source behavioral data management platform for businesses.
snowplowanalytics.com 50% confidenceHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% विश्वासAmazon S3 or Amazon Simple Storage Service is a service offered by Amazon Web Services (AWS) that provides object storage through a web service interface.
aws.amazon.com 100% विश्वासAmazon CloudFront is a fast content delivery network (CDN) service that securely delivers data, videos, applications, and APIs to customers globally with low latency, high transfer speeds.
aws.amazon.com 100% विश्वासवायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of d26hpdecvhwn5s.cloudfront.net · checked Jul 13, 2026
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।