nexuscapital[.]pro
“Nexus Capital”
Kanıt özeti
This domain, nexuscapital.pro, operates as a fraudulent investment platform designed to deceive users into disclosing sensitive financial credentials and transferring funds to attacker-controlled accounts. Analysis indicates the site impersonates legitimate financial institutions through cloned branding, fake testimonials, and fabricated regulatory claims to establish false credibility. The primary threat involves credential harvesting via fake login portals and direct solicitation of cryptocurrency or wire transfers under the pretense of investment opportunities, with victims likely targeted through social engineering campaigns or malvertising. Infrastructure analysis reveals multiple high-confidence indicators of malicious activity. The domain was registered on February 21, 2026, through a privacy-protected service, an unusual future date suggesting potential domain spoofing or registry manipulation. It resolves to IP address 66.29.137.27, hosted on an autonomous system associated with bulletproof infrastructure. Security vendors flagged the domain in 17 out of 95 VirusTotal scans, while it appears on three independent security blocklists. The site employed a Let's Encrypt SSL certificate, a common tactic among phishing operators to create a false sense of security through HTTPS encryption. Users who visited nexuscapital.pro should immediately revoke any credentials entered on the site and monitor financial accounts for unauthorized transactions. If cryptocurrency was transferred, document all transaction hashes and wallet addresses for potential recovery efforts. The domain's current offline status does not eliminate risk, as operators may reactivate it under a different name or IP. Organizations should update security controls to block the domain, its resolving IP, and associated SSL certificate thumbprint in network security appliances. Individuals should verify investment opportunities only through official channels and report suspicious domains to relevant cybersecurity authorities for takedown coordination.
Data Coverage
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 11.08.2026
Tespit zaman çizelgesi
-
VirusTotal
17 → 16
-
Cloudflare Radar
Cloudflare Radar taraması kaydedildi · Taramayı aç
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of nexuscapital.pro · checked Mar 1, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin