Vai al rapporto di sicurezza
⚠️
Questo dominio è stato segnalato come dannoso
Motori di sicurezza che segnalano un rilevamento: 9. Prestare estrema cautela: non inserire credenziali o informazioni personali.
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
4 months
Reports sent
1
Current status
HTTP 200 at latest stored check
Sicurezza del dominio e intelligence sulle minacce

nexabullcapital[.]com

“NexaBullCapital”

Verdetto di minaccia Critico Punteggio delle prove 87/100
Disponibilità Ultimo attivo conosciuto Ultima osservazione di raggiungibilità memorizzata
Rilevamenti VirusTotal: 9/91 Spamhaus DBL: DBL_SPAM Tipo di truffa: Investment Scam Ultimo attivo conosciuto
18/03/2026 1 Report Sent

Osservazione memorizzata

Contrasto dei titoli osservato

Titolo mostrato allo scannerIIS Windows Server
Titolo mostrato al visitatoreNexaBullCapital
Riepilogo delle prove
CRITICO
Punteggio
87/100

The domain nexabullcapital.com was registered on January 16, 2026 through Ultahost, Inc. It resolves to the IPv4 address 69.10.60.201, which is allocated to Interserver, Inc. in the United States. All four authoritative name servers (ns1‑ns4.ultahost.com) resolve consistently to this single IP, indicating a simple hosting configuration typical of low‑cost bulk registrars.

The web service returns HTTP 200 and presents a TLS certificate issued by Let’s Encrypt (R13), confirming the presence of a valid HTTPS endpoint. Fingerprinting of the server reveals a Windows Server operating system running Internet Information Services (IIS) with Microsoft ASP.NET. Front‑end libraries include Bootstrap, jQuery, and OWL Carousel, all loaded from public CDNs. MX records list mail.nexabullcapital.com with priority 10, suggesting a functional mail exchanger, although no additional MX hosts are observed.

Security telemetry flags the domain as a high‑risk generic phishing campaign focused on investment fraud. Nine of ninety‑five VirusTotal scanners have raised detections, and the site appears on one external blocklist, where it is actively blocked by PhishDestroy. Gridinsoft assigns a trust score of 0 out of 100, reinforcing the malicious assessment. The page title “NexaBullCapital” aligns with the advertised investment theme, and the overall profile matches known financial‑phishing infrastructure.

Defenders should add nexabullcapital.com to inbound and outbound deny lists across firewalls, DNS resolvers, and proxy filters. Monitoring of DNS queries for the four ultahost name servers can provide early warning of related campaign expansions. Where possible, sinkholing the IP 69.10.60.201 or redirecting traffic to a safe‑browse page will disrupt victim exposure. Continuous re‑evaluation is advised, as further credential‑harvesting pages may be deployed under the same domain.

Record della segnalazione inviata

Istantanea delle prove inviate

Inviato
Voci del registro
1
ID del caso
PD-20260318-0501D3
Titolo della pagina acquisita
NexaBullCapital
Artefatto PDF
Prova in PDF
Testo completo delle prove
Policy Violations:
Acceptable Use Policy (AUP): The domain nexabullcapital.com is engaged in phishing activities, which directly contravenes your AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The continued operation of this domain constitutes a violation of your TOS, which reserves the right to suspend or terminate services for any activities that are illegal or harmful to others.
Applicable Laws (US):
Computer Fraud and Abuse Act (CFAA) - 18 U.S.C. § 1030: This law prohibits unauthorized access to computers and networks, which is applicable in cases of phishing.
Wire Fraud - 18 U.S.C. § 1343: Engaging in schemes to defraud individuals or entities using electronic communications is a violation of this statute.
CAN-SPAM Act - 15 U.S.C. § 7701: This act regulates commercial email and prohibits misleading information, which is relevant to phishing schemes.
Regulatory Note: Failure to take immediate action against this domain may expose your organization to liability under applicable laws and regulations. Non-compliance could result in regulatory scrutiny and potential legal consequences.
VirusTotal
VirusTotal
9 det.
Certificato TLS
Let's Encrypt
Età
7 mo
Stato osservato
Ultimo attivo conosciuto 200
PhishDestroy
Elenco da eliminare
Presente
Reports Sent
1
Copertura dei dati VirusTotal 9 / 91 URLQuery checked — no detections recorded PhishStats checked — no match recorded OTX no community references CF Radar scan completed URLScan capture rapporto memorizzato URLScan verdict Analisi completata Blocchi DNS 14 verificato — nessun blocco TLS valid certificate, 42d WHOIS 7 mo old Screenshot 3 captures · 3 sources Catena di reindirizzamenti non sondato

Pipeline di risposta alle minacce

Scoperta
Checks
Reports
Disponibilità
10/11

Copertura delle blocklist

10 fonti · sincronizzato il 10/08/2026

Acquisizione salvata

Titolo della pagina
NexaBullCapital
Certificato TLS
Valid transport encryption · Emesso da Let's Encrypt · valid for 42 days

Analisi dei domini

Dominio
URLScan Verdict Analisi completata score 0 report ↗
Server / ASN Microsoft-IIS/10.0 · AS19318 Interserver, Inc
Reputazione IP abuse score 0/100 0 reports checked 14/07/2026
Registrar Ultahost US(US)
Indirizzo IP 69.10.60.201 US
PosizioneUS Secaucus, US
ReteAS19318 · Interserver, Inc
RegistrazioneCreato 16/01/2026 (205d)
Elapsed Since First Report 5 days
Cosa conteggiamo Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: Ultimo attivo conosciuto.
Cosa contiene ogni rapporto I record archiviati dei report in uscita possono fare riferimento a prove disponibili in quel momento, come verdetti dei fornitori, dati di registrazione, dettagli di hosting, classificazioni o screenshot. Questa pagina non deduce l'esatto carico utile consegnato, la ricevuta, la conferma o l'azione da parte di un destinatario.
Stato HTTP200
Dettagli tecniciDNS, nomi TLS e date
Rilevato per la prima volta18/03/2026
Submitted URLhttps://nexabullcapital.com/
Nameserverns1.ultahost.comns2.ultahost.comns3.ultahost.comns4.ultahost.com
MX Records10 mail.nexabullcapital.com 15 nexabullcapital.com
Impronta TLS
Osservazione TLSvalido dal 30/01/2026analizzato il 24/03/2026
ICANN OVERSIGHT

Accreditamento e contesto RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Nulla viene inviato automaticamente.
Segnala questo dominio Invia le prove e contribuisci a proteggere gli altri

Analisi di VirusTotal

9 / I fornitori di sicurezza 91 hanno contrassegnato questo dominio
View on VT
Last analyzed Previous stored snapshot: 9 detections
alphaMountain.ai
BitDefender
CRDF
CyRadar
ESET
Fortinet
G-Data
Gridinsoft
VIPRE
Analisi delle prestazioni del sito

Google PageSpeed Insights — mobile performance audit of nexabullcapital.com · checked Mar 18, 2026

60
Needs Work
Performance
FCP
3.82s
First Contentful Paint
LCP
14.34s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
1ms
Total Blocking Time
SI
8.33s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

Questo sito ti ha influenzato in qualche modo?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.

Europol
Trova il canale di segnalazione ufficiale per il tuo paese dell'UE
National police directory
Attenzione ai truffatori che promettono il recupero dei fondi! I criminali possono contattare nuovamente le vittime fingendo di essere investigatori, avvocati o agenti di recupero. Non pagare commissioni anticipate né condividere credenziali. Scopri di più sulle frodi relative ai sussidi di recupero →

Segnalalo alle autorità locali

Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.

Elenco di 97 paesi
Bozza assistita dall'intelligenza artificiale: i dettagli dell'incidente vengono elaborati dal fornitore di intelligenza artificiale Controllalo e invialo tu stesso

Verifica qualsiasi dominio

Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica

Scansiona ora

Segnala un tentativo di phishing

Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità

Segnala

Feed in tempo reale sulle minacce

Segnalazioni recenti di phishing e modifiche osservate della disponibilità

Monitora

Rimani informato, rimani al sicuro

Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo

Feed in tempo reale sulle minacce Contesta questo annuncio

Strumenti esterni

HTML · IFRAME

Incorpora questo rapporto

Condividi queste informazioni sulle minacce sul tuo sito web o sul tuo blog

embed.html
<iframe
  src="https://phishdestroy.io/it/embed/domain/nexabullcapital.com"
  title="PhishDestroy threat report for nexabullcapital.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Una lettera di ringraziamento molto sincera

Generatore di bozze satiriche

Destinatario
Contesto delle tariffe

Bozza satirica. Gli importi delle tariffe sono stime; non si afferma che siano attribuibili esattamente a questo dominio.