itrrustcaptllogin[.]webflow[.]io
“iTrustCapital Login: Access Your Self-Directed IRA Account”
Сохранённое наблюдение
Зафиксированное различие заголовков
Сводка доказательств
This domain, itrrustcaptllogin.webflow.io, is a credential phishing site designed to steal login credentials for self-directed IRA accounts. The page mimics the legitimate iTrustCapital login portal, tricking users into entering sensitive financial information such as usernames, passwords, and potentially two-factor authentication codes. Credential phishing of this nature can lead to unauthorized account access, financial theft, and identity fraud, particularly targeting individuals managing retirement funds through digital platforms. Analysis indicates the domain was registered on March 04, 2026, through MarkMonitor, Inc., a registrar commonly used for both legitimate and malicious domains. The site resolves to IP address 104.18.36.248, hosted on Cloudflare infrastructure (AS13335), which is frequently leveraged to obscure malicious activity. Security vendors have flagged the domain, with 19 out of 95 engines on VirusTotal detecting it as malicious. Additionally, the domain appears on one security blocklist and has been taken offline following reports of fraudulent activity. If you visited itrrustcaptllogin.webflow.io or entered any credentials, immediate action is required. First, change the passwords for your IRA and any other financial accounts, especially if you reuse credentials. Enable multi-factor authentication where available to add an extra layer of security. Monitor your accounts for unauthorized transactions or suspicious activity, and report any anomalies to your financial institution. Consider placing a fraud alert or credit freeze with major credit bureaus to prevent identity theft. Finally, scan your device for malware to ensure no additional threats were introduced during the visit.
Data Coverage
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | itrrustcaptllogin.webflow.io |
malicious | Sinkholed |
| DNS4EU | itrrustcaptllogin.webflow.io |
malicious | Sinkholed |
| OpenDNS | itrrustcaptllogin.webflow.io |
phishing | Phishing Block |
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
VirusTotal
0 → 20
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Технологии
Выявлено 3 технологии с высокой уверенностью
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of itrrustcaptllogin.webflow.io · checked Mar 4, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание