zenviacapitalltd[.]org
“Zenvia Capital”
zenviacapitalltd.org — Прикритий · доступний. Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 4/91 (alphaMountain.ai, CRDF, Gridinsoft, SOCRadar); URLQuery 2 alerts; cloaking observed; PhishDestroy score 83/100. Реєстратор: Fewmoretaps OU d/b/a T….
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain zenviacapitalltd.org has been identified as a generic phishing threat, currently under investigation and flagged as active. The site impersonates Zenvia Capital, a legitimate investment firm, to deceive users into disclosing sensitive information or transferring funds. No specific drainer kit has been identified at this time, but the domain's purpose aligns with credential harvesting or financial fraud.
Technical analysis reveals that the domain was registered through Fewmoretaps OU d/b/a Trustname.com and created on April 28, 2026. It resolves to IP address 188.114.96.3 and uses an SSL certificate issued by Google Trust Services (WE1). VirusTotal reports 0 detections out of 95 engines, indicating that the site has not yet been widely flagged by security vendors. However, it appears on one security blocklist and is present in one threat intelligence pulse on AlienVault OTX, suggesting it has been identified as malicious by some security researchers. The domain's page title is 'Zenvia Capital,' which directly matches the impersonated brand.
As of this writing, the domain remains active and accessible, posing an ongoing risk to users who may encounter it via email, search results, or social engineering campaigns. PhishDestroy recommends that users avoid interacting with this site entirely and report any unsolicited communications referencing Zenvia Capital. Organizations should consider blocking the domain at the network level and monitoring for related phishing indicators. Users who have already engaged with the site should change passwords and monitor financial accounts for suspicious activity.
Розвіддані з мережевої безпеки Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | zenviacapitalltd.org |
malicious | Sinkholed |
| DNS4EU | zenviacapitalltd.org |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Аналіз конфігурації сайту
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога