itrust-capitalogii[.]webflow[.]io
“iTrustCapital Login | Bitcoin Wallet”
保存済み観測
観測されたタイトルの差異
証拠の概要
This domain, itrust-capitalogii.webflow.io, poses a high-risk brand impersonation threat targeting cryptocurrency users. The site presents itself as a legitimate Bitcoin wallet login portal for iTrustCapital, a known cryptocurrency investment platform. Analysis indicates the domain is designed to harvest credentials, potentially leading to unauthorized access to user funds or further exploitation through crypto drainer attacks. The page title, 'iTrustCapital Login | Bitcoin Wallet,' directly mimics official branding to deceive users into entering sensitive login information or private keys, which could result in immediate financial loss or account takeover. Evidence supporting this assessment includes detection by 17 out of 95 security vendors on VirusTotal, indicating widespread recognition of malicious intent. The domain was registered on February 21, 2026, through NameCheap, Inc., a registrar frequently associated with newly created phishing infrastructure. Infrastructure analysis reveals the domain resolves to the IP address 172.64.151.8, hosted on Cloudflare's network (AS13335), a common tactic to obscure the true origin of malicious sites. Additionally, the domain appears on one security blocklist and is flagged by Google Safe Browsing as phishing. The SSL certificate, issued by Google Trust Services (WE1), does not mitigate the risk, as phishing sites often use valid certificates to appear legitimate. Users who have visited itrust-capitalogii.webflow.io or entered credentials on the site should take immediate action to mitigate potential damage. First, revoke any active sessions associated with the account and change passwords for all cryptocurrency-related services, prioritizing those using similar credentials. Enable multi-factor authentication (MFA) where available, using hardware-based or app-based authenticators rather than SMS. Monitor linked accounts for unauthorized transactions and report any suspicious activity to the respective platform. If private keys or recovery phrases were entered, consider the associated wallet compromised and transfer remaining funds to a new, secure wallet. Additionally, scan local devices for malware, as credential theft may be accompanied by secondary payloads. Report the domain to relevant security teams, including cryptocurrency exchanges and anti-phishing organizations, to aid in takedown efforts.
Data Coverage
ネットワークセキュリティインテリジェンス
脅威対応 Pipeline
ブロックリストの確認範囲
監視対象の外部情報源 10 件 · 保存スナップショット 2026年8月12日
検出タイムライン
使用技術
高確信度で特定された技術:3 件
VirusTotalによる分析
サイトパフォーマンス分析
Google PageSpeed Insights — mobile performance audit of itrust-capitalogii.webflow.io · checked Mar 2, 2026
このサイトによって何か影響を受けましたか?
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。
任意のドメインを確認する
保存されたブロックリスト、WHOIS、DNS、および公開スキャン証拠を使用した脅威分析
今すぐスキャンフィッシングを報告する
不審なドメインを当社の脅威データベースに報告してください — コミュニティを守りましょう
レポートリアルタイム脅威情報フィード
最近のフィッシングレポートと観察された可用性の変化
監視最新情報を入手し、安全を確保しましょう
リアルタイムの脅威を監視するか、誤検知だと思われる場合はこのリストに異議を申し立ててください