plumemobi[.]icu
“Cryptocurrency Prices, Charts And Market Capitalizations | CoinMarketCap”
plumemobi.icu — المحتوى غير متوفر (HTTP 502). ملخص الأدلة: VirusTotal 4/95 (ChainPatrol, alphaMountain.ai, Forcepoint ThreatSeeker, Seclookup); PhishDestroy score 65/100. مسجّل النطاق: NameSilo.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain, plumemobi.icu, is configured to impersonate CoinMarketCap, a legitimate cryptocurrency market data platform. The site presents a page titled "Cryptocurrency Prices, Charts And Market Capitalizations | CoinMarketCap" and likely functions as a phishing or credential-harvesting site designed to steal login credentials or cryptocurrency wallet information from users.
Technical analysis reveals multiple indicators of malicious intent. VirusTotal shows 4 detections out of 95 security vendors, with specific flags from ChainPatrol, alphaMountain.ai, Forcepoint ThreatSeeker, and Seclookup. The domain is listed on 1 blocklist. It is registered with NameSilo, LLC and hosted on IP 18.165.98.11, which belongs to AS16509 Amazon.com, Inc. in the United States. The domain was created on 2025-06-30 and lacks SSL certificate protection. Its nameservers are memphis.ns.cloudflare.com and oaklyn.ns.cloudflare.com.
The site is currently down or offline, indicating it may have been taken down or is temporarily inactive. GridinSoft trust rating is 0 out of 100, confirming a high-risk profile. The combination of a recently registered domain, lack of SSL, impersonation of a major brand, and multiple security vendor detections presents a significant threat to users who may encounter this site. Risk level is high.
استخبارات أمن الشبكات Registrar context
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
نطاق SHORTDOT · أدلة عامة
.icu
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب