recaptcha-metaquest[.]com
“Our systems have detected unusual traffic from your computer network”
Riepilogo delle prove
Analysis of the domain recaptcha-metaquest.com reveals a confirmed brand impersonation targeting Google, classified as a tech support scam. The domain was registered on July 30, 2025, through Tucows Domains Inc. and resolved to the IPv6 address 2606:4700:3033::ac43:ca94, hosted on Cloudflare's infrastructure (AS13335) in the United States. As of July 23, 2026, the domain is offline, though prior activity included a page titled 'Our systems have detected unusual traffic from your computer network,' a message commonly associated with Google's reCAPTCHA service, reinforcing the impersonation theme. Infrastructure checks show the domain was flagged by 15 of 95 security vendors on VirusTotal and appears on at least one security blocklist.
AlienVault OTX recorded the domain in two threat intelligence pulses, while PhishDestroy has already blocked it. The SSL certificate is issued by WE1, a provider often used in both legitimate and malicious contexts, offering no definitive signal on its own. Gridinsoft assigns a trust score of 0/100, indicating high risk.
While the exact content of the site remains unanalyzed, the combination of the page title, registration details, hosting on a bulletproof provider, and detection by multiple security vendors confirms its malicious intent. Defenders should treat this domain as a confirmed impersonation of Google's reCAPTCHA service, likely used to deceive users into engaging with tech support scams. Blocking the domain at DNS and network levels is recommended, along with monitoring for related infrastructure, such as the associated IP address and SSL certificate.
Data Coverage
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 11/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, nomi TLS e date
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Informazioni forensi
Analisi di VirusTotal
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo