staging.citiretailservices.citibankonlline.com
Categoria: Phishing
Para usar o produto com todas as funcionalidades, tem de adquirir uma licença do Combo Cleaner. Está disponível um teste gratuito limitado de sete dias. O Combo Cleaner é propriedade e operado pela RCS LT, a empresa-mãe do PCRisk.com.
O Quttera Web Malware Removal é um serviço de subscrição paga. Os preços, planos e disponibilidade de teste são definidos pela Quttera. A Quttera é operada pela Quttera Ltd, uma empresa terceira independente sem relação com a RCS LT. O PCrisk.com pode receber uma comissão de referência quando os utilizadores aderem através desta ligação.
Descrição de staging.citiretailservices.citibankonlline.com
This domain appears to present itself as a Citibank-related page based on the strings "citiretailservices" and "citibank" in the hostname, but it is hosted under the separate parent domain citibankonlline.com. The screenshot shows a sparse landing page titled "citibank online" with little functional content beyond placeholder-style layout elements and basic footer links, which does not resemble a full banking portal or a normal retail banking service page.
Based on the domain structure and visible content, this page may be intended to imitate or reference online banking services rather than operate as an established standalone website. The parent domain spelling also differs from the well-known Citibank brand wording, which raises questions about whether the site is operated by the legitimate financial institution. No clear operator identity is visible in the screenshot.
Avaliação de segurança de staging.citiretailservices.citibankonlline.com
Multiple security signals indicate elevated risk at the time of this scan. The domain was flagged by 16 out of 91 security engines, with many of those detections classifying it as phishing or malicious. In addition, the hostname closely resembles Citibank branding while using a different parent domain, which may indicate a look-alike website intended to confuse visitors. The page content shown in the screenshot is minimal and does not provide the normal trust signals expected from a financial services website.
The malware scan also produced a suspicious result on the main page, although that finding by itself is lower confidence than the broader multi-engine consensus. Blacklist checks for major content-malice databases did not show listings at the time of this scan, but the domain's IP address is listed on one mail-reputation blocklist, which is a weaker cautionary signal rather than direct proof of harmful web content. Based on these findings, this website may pose potential risks to visitors.
Descrição técnica
The site is using a valid Let's Encrypt SSL certificate that was active at the time of the scan, but HTTPS alone does not verify that a website is legitimate. DNSSEC appears to be unsigned, which means there is no added DNS integrity protection visible from the provided records. The domain is about 4 years old, uses nameservers at redfoxdns.com, and resolves to an IP hosted by Limestone Networks in Dallas, United States.
Server fingerprinting data is limited, with the web server and protocol not clearly identified in the scan output. The combination of a valid certificate, sparse page content, unsigned DNSSEC, and a hostname that appears to mimic a banking brand may warrant caution from a technical trust perspective.
Partilhe a sua experiência com este website. Era seguro? Encontrou algum problema?