psxloot[.]vip
“PSXloot - Codes PSN”
ملخص الأدلة
PhishDestroy identifies psxloot.vip as an active PlayStation credential-phishing domain designed to harvest Sony PSX account credentials. This impostor site masquerades as a legitimate PlayStation rewards or game-loot portal, tricking users into entering their PSN usernames and passwords. Traffic to the domain is redirected from spoofed emails, malvertisements, and compromised social-media posts that promise free PlayStation Store codes, DLC, or beta access. Once credentials are captured, threat actors gain full account control, enabling unauthorized purchases, data theft, and potential account takeovers. This domain exhibits multiple red flags confirmed by PhishDestroy’s threat-intelligence pipeline. VirusTotal analysis reveals only 1 of 95 participating security vendors currently detect psxloot.vip as malicious, underscoring low early-stage detection and high evasion. The domain was registered on March 27, 2026 through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar historically linked to bulk domain registrations and bulletproof hosting workflows. The site resolves to IP 209.112.89.200, a netblock associated with prior credential-phishing and malware campaigns. Despite using a valid Let’s Encrypt SSL certificate, the mismatch between the certificate’s subject and the impersonated PlayStation brand further exposes the site’s fraudulent nature. If you visited psxloot.vip or entered any credentials, immediately change your PlayStation Network password and enable two-step verification via the official PlayStation website or app. Review recent purchase history and revoke any unauthorized permissions. Clear browser cookies and run a full antivirus scan. Report the domain to your email provider or security software and avoid similar lures promising free PlayStation content.
لقطة الأدلة المرسلة
- أُرسل
- سجلات الدفتر
- 1
- معرّف القضية
PD-1774965317-psxloot.vip- ملف PDF
- دليل PDF
سجل البلاغات 1
- البلاغ 1 Phishing Abuse Report: psxloot[.]vip
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 13/08/2026
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب