DANGEROUS

Fake shop — do not order

Domain is only 89 days old. The site shows patterns common to non-delivery scam shops. Don't submit payment details, and if you already paid by card or PayPal, start a chargeback today.

Security Review

Is ibs.royalcrowncorp.com legit or a scam?

Our verdict:Dangerous· 25/100

Fake digital banking phishing site using the Royal Crown name; 89-day-old domain flagged for credential harvesting with zero legitimate business registration.

ibs.royalcrowncorp.comScanned 1h ago
0
Trust score
DANGEROUS
Heuristics 80·MT 18
Category tags
financial fraudphishing#Phishing#Fake Shop92% MT confidence
Technical red flags (1)

These checks passed — but they don't clear the site. A clean antivirus result, valid SSL, and a calm server only mean it isn't hosting malware; they say nothing about whether the business is real. This verdict is based on the site's conduct and content, not a malware detection.

View density

Analysis Summary

Threat Intelligence
Data unavailable
Domain Age
89 days old
Registered Mar 10, 2026
MT Intelligence
Dangerous
Critical likelihood · 92% confidence

MT Intelligence

Advanced threat intelligence
MT Security Analyst
Critical scam likelihoodengineMT · Guardiantrust18/100
MT AgentLive web researchVisual inspectionNetwork correlation
0%
Confidence
The site presents itself as 'Royal Crown Corporation — Digital Banking' with a login form requesting ID, password, and PIN. Our research found two independent threat reports flagging the domain for phishing and suspicious activity. The domain was registered only 89 days ago, and the main domain royalcrowncorp.com is similarly new. No legitimate business registration, banking license, or regulatory approval exists for any Royal Crown Corporation financial institution. The name 'Royal Crown' is historically associated with RC Cola beverages, not banking. The combination of a fake banking interface, recent registration, phishing flags from threat-intelligence sources, and complete absence of legitimate business credentials points to a credential-harvesting operation.
Full dossier
Analysis complete

Page Content

The site displays a digital banking login interface branded as 'Royal Crown Corporation' with fields for ID, password, and PIN validation. This mimics legitimate bank login pages but serves no actual banking function — it is designed to harvest credentials.

Infrastructure

Hosted on IP 104.21.45.221 (Cloudflare) with valid SSL (Let's Encrypt). The IP has an abuse score of 0/100 but carries 1 abuse report. SSL is valid for 59 more days. No cross-domain redirects or homoglyph tricks detected.

Domain History

ibs.royalcrowncorp.com registered 89 days ago via Cloudflare Registrar. The parent domain royalcrowncorp.com is also recently registered. WHOIS privacy is not enabled, but no legitimate business entity is associated with either domain.

Web Reputation

Independent threat-intelligence sources flagged the domain for phishing and suspicious activity. No positive reviews, business registrations, or legitimate mentions exist. The name 'Royal Crown' has no connection to any modern financial institution.

Risk Factors
7
  • Domain registered only 89 days ago; parent domain also recently created — classic pattern for short-lived phishing operations.
  • Presents a fake digital banking login interface designed to harvest credentials (ID, password, PIN).
  • Flagged for phishing by independent threat-intelligence sources; marked as suspicious and potentially a scam.
  • No legitimate business registration, banking license, or regulatory approval found for Royal Crown Corporation as a financial entity.
  • Name 'Royal Crown' is historically tied to RC Cola beverages, not banking — impersonation of a non-existent bank.
  • Zero independent reviews, complaints, or positive mentions on consumer-review sites or social media.
  • No verifiable contact information, business address, or regulatory disclosures typical of legitimate financial institutions.
Positive Signals
3
  • SSL certificate is valid and issued by a trusted certificate authority (Let's Encrypt).
  • Hosting IP has a clean abuse score (0/100) with minimal abuse history.
  • No malware or executable payloads detected in our sandbox analysis.
AI Recommendation
Do not enter any credentials, personal information, or financial details on this site. If you received a link to this page via email or text, report it as phishing to your actual bank and to relevant authorities. Delete any messages promoting this site.
Scam network detected
1 linked domain correlated

The subdomain ibs.royalcrowncorp.com is part of a fake banking operation using the parent domain royalcrowncorp.com. Both domains were registered recently and show no legitimate business presence.

royalcrowncorp.com
Next-gen fraud intelligence
Evidence-backedCross-checked

Website Preview

Screenshot of ibs.royalcrowncorp.com
LIVE RENDER
ibs.royalcrowncorp.com

Automated page render — captured in a safe sandbox. What an ordinary visitor would see when loading the site.

Web Research Findings

Our live research agent queries scam-report databases, consumer-review sites, news coverage, and general web search for ibs.royalcrowncorp.com, then cross-checks business-registration records and look-alike domain patterns. Everything below is pulled from what it actually found.

Domain age
2 months
Registered Mar 2026
Business registration
No public record found
Could not match the site to a registered company — common for small sites.
Clone check
Not a clone
No well-known site's layout or branding detected here.
Typosquat check
No look-alike match
The domain doesn't resemble any well-known brand's spelling.
Web mentions
2 scam reports · 1 complaint
Key findings
7 headline facts from open-web research
  • Domain ibs.royalcrowncorp.com is 89 days old; main domain royalcrowncorp.com also recently registered.
  • Site presents as "Royal Crown Corporation - Digital Banking" with internet banking login page (ID/Password, PIN validation).
  • ScamAdviser gives very low/0 trust score, flags as potential scam, recently registered, and IPQS phishing/suspicious.
  • No independent reviews, complaints, or mentions found on Reddit, Trustpilot, or other review sites.
  • No business registration, regulatory licenses, or verifiable company information located for a financial entity named Royal Crown Corporation.
  • Name "Royal Crown" strongly associated with RC Cola (rccolainternational.com); no connection to any legitimate modern bank.
  • Main site royalcrowncorp.com claims to be a bank/credit union with support@royalcrowncorp.com contact.
Scam reports (2)
Direct quotes from public scam databases, forums, and news.
  • ScamAdviseropen

    "we scanned royalcrowncorp.com for several indicators and we think the website may be a scam. Exercise extreme caution when using this website."

  • ScamAdviseropen

    "This website has only been registered recently. IPQS flagged this website for Phishing. IPQS has flagged this website as suspicious."

Research summary
Narrative write-up from our AI analyst, grounded on the facts above

Our research identified two independent threat reports flagging royalcrowncorp.com as a potential phishing scam. One report noted the domain was recently registered and flagged by threat-intelligence sources for phishing and suspicious behaviour. No legitimate business registration, banking license, or regulatory approval was found for Royal Crown Corporation as a financial institution. No positive reviews, complaints, or mentions were discovered on consumer-review sites, social media, or news sources. The name 'Royal Crown' is historically associated with RC Cola beverages, not banking.

Security Scans

Blacklist Check
Not flagged on major threat lists

Checked against the major public blocklists used by browsers and security tools — no hits.

Sandbox Render
Sandbox capture incomplete — no traffic recorded
Requests made0
Unique IPs0
Countries0
Detected brandsNone

Domain & Encryption

Domain History
Age89 days old
RegistrarCloudflare, Inc.
RegisteredMar 10, 2026
ExpiresMar 10, 2027
Owner privacyVisible
Encryption Certificate
StatusValid
ProtocolTLSv1.3
IssuerLet's Encrypt · E8
ExpiresAug 6, 2026 (59d)
Self-signedNo
Hosting & Technology
HostingCloudflare, Inc.
Server locationUS

Server Reputation

Hosting
CountryUnknown
NetworkUnknown
IP addressUnknown
Abuse Intelligence
Confidence score0%
Reports on file1
ISPCloudflare, Inc.
Usage typeContent Delivery Network

Scam-Type Likelihood

2 scam-type patterns detected
Scam-Type Likelihood

2 of 13 categories showed signals

We check every URL against 13 distinct scam categories so the verdict tells you not just how risky the page is, but what kind of risk it carries. Each meter pulls from page signals, web reports, our AI analyst, vision, and the scam-network cluster — not from raw AV labels.

Top match: Fake Shop
Fake Shop
Moderate likelihood
35/100
  • AI analyst tagged this as a fake shop.
  • No phone number or postal address anywhere on the page.
  • Domain is 89 days old — very young for a shop.
Phishing
Low-level signals
10/100
  • AI analyst tagged this as phishing.

Fake shop — do not order

Signals common to non-delivery scam shops were detected on this site.

  • Do not interact with ibs.royalcrowncorp.com

    Do not enter credentials, deposit money, download files, or install browser extensions from this site.

  • If you already paid by card or PayPal — start a chargeback

    Contact your bank or card issuer and dispute the charge as "goods not received" or "merchant fraud." PayPal users can open a case in the Resolution Centre. Act within 120 days for card chargebacks in most jurisdictions.

  • Save every piece of evidence

    Screenshots of the checkout, order confirmation emails, any chat transcripts, and the product listing page. Chargeback and fraud reports go faster when you have receipts.

  • Report the shop

    Report to the FTC (reportfraud.ftc.gov), Action Fraud UK, or your local consumer-protection body. Post the URL on the MalwareTips scam forum so other buyers can find it.

    Open

Reputation Sources

How this domain rates across independent threat-intelligence and blocklist providers.

Google Safe Browsing
Not listedCheck ↗
AbuseIPDB
Not listedCheck ↗

Safety FAQ

Common questions about this site, answered directly from the scan data above — so the answers always reflect the latest verdict on this page.

  • Our automated security review flags ibs.royalcrowncorp.com as dangerous. Multiple threat indicators were detected — treat the site as a scam until proven otherwise.
  • No — ibs.royalcrowncorp.com scored 25/100 on our trust scale. We detected active threat indicators, so we recommend avoiding the site entirely.
  • Yes. ibs.royalcrowncorp.com presents a valid TLSv1.3 certificate issued by Let's Encrypt · E8, expiring in 59 days. Note that SSL only encrypts the connection — it does not guarantee that the site itself is trustworthy.
  • ibs.royalcrowncorp.com is 2 months old, registered on 3/10/2026 through Cloudflare, Inc.. Scam domains are often freshly registered — a site under 6 months old warrants extra caution.
  • No. ibs.royalcrowncorp.com is not currently listed on the major browser blocklist feeds that modern browsers use.
  • ibs.royalcrowncorp.com resolves to an IP operated by Cloudflare, Inc. in US (usage type: Content Delivery Network). Hosting location alone doesn't make a site good or bad, but unusual geography for a brand's claimed country is one of many signals we weigh.
  • We cache results for 24 hours. Signed-in MalwareTips members can trigger a manual rescan at any time using the "Rescan" button on the report page, which re-runs every check from scratch and refreshes this page.

Final Verdict

0
Trust / 100
Final Verdict·ibs.royalcrowncorp.com
DANGEROUS

This is a fake digital banking login page impersonating a non-existent financial institution. The domain is only 89 days old, has been flagged for phishing by multiple threat-intelligence sources, and no legitimate Royal Crown Corporation bank exists.

Do not enter any credentials, personal information, or financial details on this site. If you received a link to this page via email or text, report it as phishing to your actual bank and to relevant authorities. Delete any messages promoting this site.

AV engines
MT passes
2
Net signals
0
Scan another URL
Security review completemalwaretips.com/url-scan
Recently scanned

Other Dangerous reports

Browse all reports
Community review

User reviews & comments(0)

Share your experience — "Lost $200 on a fake checkout" is more useful than "Scam". Your review helps others avoid traps.

Loading…
Loading comments…
Scanned by
JackStaff
This report is generated automatically by combining threat intelligence, domain signals, and an AI security analyst. It is informational, not legal advice. Always use your own judgement before sharing personal information or money online.