app-plume[.]xyz
Domain Security & Threat Intelligence Report
Analyst Security Overview
AI-GeneratedThe domain app-plume.xyz was identified as a phishing site designed to impersonate legitimate applications and harvest user credentials. It received a significant threat score of 16 out of 95 on VirusTotal, indicating a considerable danger to users who may have encountered it. The domain's malicious intent is underscored by its classification as an 'Angel Drainer,' which is specifically associated with credential theft operations.
Registered with PDR Ltd. d/b/a PublicDomainRegistry.com, app-plume.xyz was relatively new at just 134 days old. Its infrastructure was hosted on an IP address known for dubious activity, contributing to multiple blacklisting reports, with a total of 6 blocklist entries. These factors significantly raised red flags, prompting immediate scrutiny from security analysts.
Currently, the site is dead, having been taken down following proactive measures by PhishDestroy. The domain was reported and subsequently blocklisted, effectively neutralizing its potential to mislead users. Continuous monitoring of similar domains remains a priority to prevent recurrence of such phishing attempts.
Threat Response Pipeline
Public Blocklist Status
Website Screenshot
Domain Intelligence
konnor.ns.cloudflare.com
brotherhd4@mail.ru
abuse-contact@publicdomainregistry.com
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If you have interacted with this domain, entered personal information, or connected a cryptocurrency wallet — take immediate action. Below are resources to help you report the incident and protect yourself.
Report to Your Local Authorities
Select your country to see local cybercrime reporting contacts and complaint templates.
Related Domain Reports
Other Domains on 198.18.1.227
More Domains at PDR Ltd. d/b/a PublicDomainRegistry.com
Stay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive
URLScan Report