bittradeonline[.]net[.]fairlypaycapital[.]com
“BITTRADEONLINE | CFD Trading — Trading on Stocks, Gold, Oil, Indices”
bittradeonline.net.fairlypaycapital.com — Контент недоступен. Олицетворение бренда: Across; Тип мошенничества: Brand Impersonation. Сводка доказательств: VirusTotal 13/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); URLScan malicious verdict; Google Safe Browsing flagged; PhishDestroy score 89/100. Регистратор: NameSilo.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, bittradeonline.net.fairlypaycapital.com, poses a high-risk brand impersonation threat targeting users of financial trading platforms. Analysis indicates the site mimics legitimate CFD (Contracts for Difference) trading services, presenting itself under the title 'BITTRADEONLINE | CFD Trading — Trading on Stocks, Gold, Oil, Indices.' The fraudulent page is designed to deceive visitors into entering sensitive credentials, including login details, personal identification, and financial information, which are then harvested for unauthorized access to accounts or identity theft. The domain’s infrastructure and deceptive content suggest a deliberate attempt to exploit trust in established trading brands, particularly those offering commodities and indices trading. Infrastructure analysis reveals the domain was registered on August 22, 2025, through NameSilo, LLC, a registrar frequently observed in phishing campaigns. It resolves to the IP address 198.12.93.82, hosted on AS36352 (HostPapa) in the United States. Detection metrics further confirm its malicious nature: 13 out of 95 security vendors on VirusTotal flag the domain as phishing, and it appears on at least one security blocklist. Additionally, Google Safe Browsing has classified the site as phishing, and no valid SSL certificate is present, increasing the risk of unencrypted data transmission. The absence of legitimate security measures and the use of a subdomain structure (fairlypaycapital.com) are common tactics to evade detection and prolong operational lifespan. Users who have visited bittradeonline.net.fairlypaycapital.com or interacted with its content should take immediate action to mitigate potential harm. First, cease all interaction with the site and avoid entering any credentials or personal information. If login details were submitted, change passwords immediately for the affected account and any other platforms where the same credentials may have been reused. Enable multi-factor authentication (MFA) where available to add an additional layer of security. Monitor financial accounts for unauthorized transactions and report any suspicious activity to the relevant financial institution. Finally, scan the device used to access the site for malware, as phishing pages may distribute malicious payloads. Given the domain’s active status and high-risk classification, vigilance and proactive measures are critical to preventing further compromise.
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Registration: fairlypaycapital.com
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain fairlypaycapital.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание