scotiabank[.]co[.]com
Проверка домена scotiabank.co.com на фишинг и безопасность
“K88 Scotiabank | Link Vào Trang Chủ K88WIN Mới Nhất”
scotiabank.co.com — Последний известный активный (HTTP 301). Олицетворение бренда: Ankr; Тип мошенничества: Banking Phishing. Сводка доказательств: VirusTotal 2/91 (alphaMountain.ai, Gridinsoft); 3 external blocklist matches (Polkadot, Enkrypt, Codeesura); PhishDestroy score 84/100. Регистратор: Moniker Online Services.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of scotiabank.co.com indicates a high-risk brand impersonation domain targeting Ankr, a known blockchain infrastructure provider. The domain, registered through Moniker Online Services LLC on August 16, 1997, is currently active and exhibits multiple indicators of malicious activity. Infrastructure analysis reveals the domain resolves to 172.67.177.109, hosted on Cloudflare's network (AS13335) in the United States. Nameservers are configured as ns1.nic.co.com through ns4.nic.co.com, a pattern consistent with bulk-registered phishing domains under the co.com namespace. The page title, 'K88 Scotiabank | Link Vào Trang Chủ K88WIN Mới Nhất,' suggests a gambling or betting theme, which does not align with Ankr's core services, indicating a likely attempt to obfuscate the true nature of the phishing campaign.
The domain is flagged by four security blocklists, including PhishDestroy, Polkadot, Enkrypt, and Codeesura, and holds a Gridinsoft trust score of 0/100. Two of 91 security vendors on VirusTotal detect the domain as malicious. The site employs a 301 HTTP redirect, a common tactic to funnel victims to secondary malicious infrastructure. Technologies detected include WordPress, MySQL, PHP, jQuery, HSTS, and HTTP/3, with Cloudflare providing CDN and security services. The SSL certificate is issued by Google Trust Services (WE1), which does not inherently indicate legitimacy due to the widespread abuse of free SSL certificates by threat actors.
Defenders should treat this domain as active phishing infrastructure, particularly given its association with banking phishing scams as classified in the available intelligence. No evidence confirms whether this domain is part of a broader campaign or operates as a standalone threat. The discrepancy between the domain name (scotiabank.co.com) and the targeted brand (Ankr) suggests either a misconfiguration or deliberate obfuscation.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 7 identified
Open-source CMS powering over 40% of websites worldwide.
Open-source relational database management system.
Server-side scripting language designed for web development.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Анализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of scotiabank.co.com · checked Mar 2, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание