# drop.lat — SUSPICIOUS > drop.lat exposed as a fake document sharing scam hosting malicious payloads. VirusTotal shows 0/95 detections. Check the full report. ## Summary PhishDestroy identifies drop.lat as an active document-themed phishing scam designed to harvest credentials under the guise of file sharing services. The domain mimics legitimate cloud storage platforms to deceive users into uploading sensitive information or downloading malicious executables. All indicators align with a high-risk credential harvesting operation. This domain was flagged by PhishDestroy with a domain age of 2 days (created September 13, 2025) and resolves to IP 54.215.31.113. It is registered through Dynadot LLC and secured with a Let’s Encrypt SSL certificate. VirusTotal currently shows 0/95 security engines detecting malicious activity, indicating it has evaded automated scanning networks. No inclusion on blocklists or trustworthy domain repositories has been observed at this time. Users encountering drop.lat should avoid interaction, as the site likely delivers malware or prompts for login credentials under false pretenses. If exposed, immediately revoke any shared passwords, scan devices with endpoint protection, and report the domain to your security team or through PhishDestroy’s submission portal. Organizations are advised to block the IP 54.215.31.113 and domain at the network perimeter. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2025-09-13 07:31:14 - Registrar: Dynadot LLC - IP: 54.215.31.113 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/f0648993-5fa6-45ea-b5ae-6b1c770e5b0e - PhishDestroy: https://phishdestroy.io/domain/drop.lat/ - LLM endpoint: https://phishdestroy.io/domain/drop.lat/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/drop.lat/ Last updated: 2026-03-22