elitecapitalprofit[.]com
“Home | elitecapitalprofit.com”
elitecapitalprofit.com — 内容不可用. 品牌冒充:Across; 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 10/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); PhishDestroy score 80/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, elitecapitalprofit.com, was observed resolving to the IPv4 address 198.251.88.188, which belongs to ASN 53667 (FranTech Solutions) and is geolocated in the United States. The registration date of 21 February 2026 indicates a very recent creation, a pattern frequently seen in malicious infrastructure. The site presented the page title “Home | elitecapitalprofit.com”, suggesting a generic landing page without any brand‑specific markup. VirusTotal analysis recorded detections from ten of ninety‑five scanned security vendors, and the domain is currently listed on a public security blocklist. PhishDestroy has confirmed that the site has been taken offline.
The SSL certificate associated with the domain carries an R12 rating, which is typically regarded as low trust. The campaign is classified as a crypto scam and is reported to impersonate the brand “across”. The risk level has been assigned as elevated. Evidence confirms the hosting infrastructure, registration timestamp, detection count, blocklist presence, and SSL rating, but the lack of publicly available Safe Browsing, Open Threat Exchange, or registrar details limits a full attribution of the threat actor. No additional artifacts such as phishing kits, credential‑stealing forms, or malicious payloads have been disclosed.
Defenders should immediately add elitecapitalprofit.com to DNS and URL filtering policies, enforce blocklisting of the associated IP 198.251.88.188, and monitor for any traffic to the ASN 53667 range that matches the observed pattern. Continuous re‑evaluation of VirusTotal and other vendor feeds is advised in case new detections appear. Because the domain was taken offline, threat hunting should also include retrospective analysis of logs that may contain prior connections to the IP address or TLS handshake records.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。