fixedgearcapital[.]pro
Проверка домена fixedgearcapital.pro на фишинг и безопасность
“Fixed Gear Capital”
fixedgearcapital.pro — Последний известный активный (HTTP 200). Сводка доказательств: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); PhishDestroy score 81/100. Регистратор: Fewmoretaps OU d/b/a T….
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain fixedgearcapital.pro is currently classified as a generic phishing site. The page title “Fixed Gear Capital” is presented to visitors, suggesting a financial services front‑end. The domain was created on 18 November 2025 and remains active as of 12 July 2026. Registration records list Fewmoretaps OU d/b/a Trustname.com as the registrar, a pattern often observed in malicious infrastructure.
Network resolution points the domain to the IP address 188.114.96.3, which is hosted by CloudFlare, Inc. in Canada. The site serves content over HTTPS with a certificate issued by Google Trust Services under the WE1 leaf, indicating a valid TLS chain that can hide malicious payloads from casual inspection. HTTP response code 200 confirms that the page is reachable and returns a normal web response.
Threat intelligence sources reinforce the suspicion: AlienVault OTX has referenced the domain in eight separate pulses, and the Gridinsoft trust score is 0 / 100, the lowest possible rating. The domain appears on a single security blocklist and has been blocked by a recognized anti‑phishing list. VirusTotal scans have not yet produced detections (0 / 95), which is consistent with early‑stage campaigns that evade signature‑based scanners.
Defenders should treat fixedgearcapital.pro as a high‑confidence phishing indicator. Immediate actions include adding the domain and its resolving IP to outbound filtering rules, monitoring DNS queries for the domain, and applying URL‑based blocks in web gateways. Analysts should continue to track any new detections, especially from sandbox environments, and correlate observed traffic with the eight OTX pulses to assess potential victimization patterns.
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание