capitalsusa[.]com
Проверка домена capitalsusa.com на фишинг и безопасность
“BlackRock”
capitalsusa.com — Контент недоступен (HTTP 502). Олицетворение бренда: Across; Тип мошенничества: Brand Impersonation. Сводка доказательств: VirusTotal 13/95 (alphaMountain.ai, BitDefender, CyRadar, ESET, Forcepoint ThreatSeeker); URLScan malicious verdict; 1 external blocklist match (ScamSniffer); PhishDestroy score 94/100. Регистратор: Gname.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain capitalsusa.com was first registered on October 03, 2025 through Gname.com Pte. Ltd. and is currently resolved to the IP address 172.67.179.129, which belongs to the AS13335 Cloudflare network located in the United States. Infrastructure analysis shows the domain is served behind Cloudflare’s edge platform, utilizes HTTP/3, and presents a TLS certificate issued by Google Trust Services under the WE1 certificate authority. The authoritative name servers are phoenix.ns.cloudflare.com and terin.ns.cloudflare.com, confirming the use of Cloudflare’s DNS services.
Reputation services flag the site as highly risky. Gridinsoft assigns a trust score of 0 out of 100, while Scamadviser rates it 1 out of 100. AlienVault OTX lists the domain in a single threat‑intel pulse, and two public blocklists—PhishDestroy and ScamSniffer—have added it to their deny lists. VirusTotal reports that 13 of 95 scanned security vendors label the domain as malicious, reinforcing the suspicion of abuse.
The only visible page element is the title "BlackRock," indicating a possible attempt to impersonate the financial services brand. The threat type is recorded as brand impersonation with an elevated risk rating, and the domain is currently taken offline.
Defenders should continue to block traffic to 172.67.179.129 and monitor any DNS queries for capitalsusa.com. Updating firewall and proxy rules to deny resolutions from the identified Cloudflare name servers will prevent accidental access. Because the site is already listed on multiple blocklists, adding it to internal threat‑intel feeds will provide early warning for endpoint and email security solutions. Continuous re‑scanning on VirusTotal and other sandbox environments is advised to capture any changes should the domain reactivate.
Сигналы безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of capitalsusa.com · checked Mar 2, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание