app-plasma[.]homes
“Plasma - Stablecoin infrastructure for instant payments”
ملخص الأدلة
This domain, app-plasma.homes, is flagged as a crypto drainer phishing site targeting users of stablecoin payment infrastructure. Analysis indicates the domain impersonates legitimate stablecoin platforms, likely aiming to harvest wallet credentials or deploy malicious scripts to drain cryptocurrency assets from connected wallets. The threat is classified as a crypto drainer due to its focus on financial asset theft through deceptive payment or wallet integration prompts, a common tactic in decentralized finance (DeFi) fraud schemes. Infrastructure analysis reveals multiple high-confidence indicators of malicious activity. The domain is detected by 4 out of 95 security vendors on VirusTotal, including blockchain-specific security tools. It appears on three independent security blocklists, reinforcing its classification as a confirmed threat. Registered through Porkbun, LLC on May 02, 2026, the domain exhibits an anomalous creation date, suggesting it was either pre-registered for malicious use or backdated to evade detection. The site resolves to IP address 52.33.207.7, a hosting provider frequently associated with phishing campaigns. Detected technologies include Webflow, jsDelivr, and Google Tag Manager, which are often leveraged to obfuscate malicious payloads or exfiltrate user data. Users who visited app-plasma.homes should immediately revoke any wallet permissions granted to the site and disconnect all active sessions. If credentials or private keys were entered, affected wallets must be considered compromised, and funds should be transferred to a new, secure wallet. Monitor transaction histories for unauthorized transfers, particularly those involving stablecoins or instant payment tokens. Reset passwords for any accounts linked to the domain and enable multi-factor authentication where available. Given the elevated risk level, users are advised to scan their devices for malware, as crypto drainers may deploy secondary payloads to maintain persistence. Report the domain to relevant security teams or blockchain analytics platforms to aid in tracking and mitigation efforts.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026
المخطط الزمني للاكتشاف
-
VirusTotal
1 ← 4
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات
حُدّدت ١٠ تقنيات عالية الثقة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of app-plasma.homes · checked Jun 26, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب