Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@interhost.net.
The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
capitana[.]co[.]il
“Email Update”
capitana.co.il — Encoberto · alcançável. Representação da marca: Genericemail; Tipo de golpe: Credential Phishing. Resumo das evidências: VirusTotal 9/91 (alphaMountain.ai, Cluster25, CRDF, CyRadar, ESET); URLQuery 2 alerts; URLScan malicious verdict; Spamhaus DBL_PHISH; cloaking observed; PhishDestroy score 96/100. Registrador: Gorni Interactive.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, capitana.co.il, is currently under investigation for hosting a fake login portal designed to harvest user credentials. Such phishing sites mimic legitimate authentication pages to deceive visitors into entering sensitive information, including usernames, passwords, and potentially multi-factor authentication codes. The stolen data is often used for unauthorized account access, financial fraud, or further phishing campaigns targeting additional victims. The risk is heightened for users who reuse passwords across multiple platforms, as compromised credentials may grant attackers access to other accounts. Analysis indicates that capitana.co.il was registered on June 08, 2026, through the registrar Gorni Interactive Ltd. As of the latest assessment, the domain has not been flagged by any of the 95 security engines on VirusTotal, reflecting a 0/95 detection rate. The domain resolves to the IP address 185.217.97.86 and is associated with a Let's Encrypt SSL certificate, which provides encryption but does not validate the legitimacy of the site. The domain appears on one security blocklist, specifically PhishDestroy, suggesting prior detection of malicious activity. The infrastructure analysis reveals that the domain was taken offline, which may indicate either remediation efforts or a temporary evasion tactic. Users who visited capitana.co.il or entered credentials on the site should take immediate action to mitigate potential risks. First, change passwords for any accounts that may have been exposed, prioritizing financial, email, and work-related services. Enable multi-factor authentication where available to add an additional layer of security. Monitor accounts for suspicious activity, such as unauthorized logins or transactions, and report any anomalies to the respective service providers. If personal or financial information was entered, consider placing a fraud alert or credit freeze with relevant credit bureaus. Finally, scan local devices for malware, as phishing sites may also distribute malicious payloads. Exercise caution with unsolicited communications, and verify the authenticity of any login portals before entering credentials.
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| YARAhub by abuse.ch | capitana.co.il/korea.html |
malware | Detects file containing Telegram Bot API |
| DNS4EU | capitana.co.il |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 1 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% de confiançaAnálise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of capitana.co.il · checked Jun 26, 2026
Evidências e relatórios externos
PD-20260608-EB9A54 Recipient: abuse@interhost.net Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo