metrotcapital[.]com
“Metrotcapital - Home”
Збережене виявлення
Виявлено маскування
- Тип маскування
content_divergence- Оцінка маскування
- 2/6
Зведення доказів
This domain is flagged for elevated-risk brand impersonation targeting Across, a decentralized finance protocol. Analysis indicates the site mimics legitimate Across branding to deceive users into engaging with fraudulent financial services, potentially leading to unauthorized asset transfers or credential compromise. The threat type is classified as brand impersonation, distinct from generic phishing or credential theft, due to its focus on replicating corporate identity and exploiting trust in the targeted platform. Infrastructure analysis reveals the domain metrotcapital.com was registered on June 26, 2025, through NameSilo, LLC, and resolves to the IP address 107.172.61.186. The site employs a Let's Encrypt SSL certificate and leverages technologies including Bootstrap, LiteSpeed, Cloudflare, Swiper, Smartsupp, Slick, jQuery UI, and jQuery, which are consistent with modern web development practices but also commonly abused in malicious campaigns. Detection metrics show the domain appears on one security blocklist, with VirusTotal reporting 1 out of 95 security vendors flagging it as malicious. The Gridinsoft trust score for this domain is 0 out of 100, further corroborating its high-risk classification. Mitigation steps specific to brand impersonation threats include immediate domain blacklisting at the network perimeter to prevent user access. Organizations should deploy automated detection rules to identify and block domains registered within the past 90 days that impersonate known brands, particularly those resolving to high-risk IP ranges such as 107.172.61.186. End-users should be educated to verify domain authenticity by cross-referencing official brand communications and checking for discrepancies in SSL certificates, page titles, or subdomain structures. Security teams are advised to monitor for lateral movement or unauthorized transactions originating from internal systems that may have interacted with this domain prior to its takedown.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
Хронологія виявлення
-
VirusTotal
1 → 0
-
Статус домену
Доступний → Недоступний
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології
Виявлено 12 технологій із високою впевненістю
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of metrotcapital.com · checked Jun 27, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога