# peashulai.ru — MALICIOUS > peashulai.ru is a fake login scam site that steals credentials; 9 security vendors flagged it and it was created March 19, 2026. ## Summary PhishDestroy identifies peashulai.ru as an active fake-login scam that tries to trick visitors into submitting usernames and passwords for theft. The page masquerades as a legitimate service while quietly harvesting credentials sent to the attacker’s server. Any data entered—including payment details if prompted—can be immediately used for fraudulent transactions or sold on dark-web markets. This domain was flagged on March 19, 2026, only days after creation, indicating a rapid deployment designed to evade early detection. VirusTotal reports 9 out of 95 participating security vendors now detect the threat, and it is registered through R01-RU using a Let’s Encrypt SSL certificate to appear trustworthy. The hosting IP 87.120.187.146 is linked to previous malicious campaigns, reinforcing the elevated risk level assigned by threat analysts. If you visited peashulai.ru, immediately change any passwords you may have typed and enable two-factor authentication on all related accounts. Scan your device with up-to-date antivirus software to check for follow-on malware. Report the domain to your organization’s security team or to national abuse channels such as CERT-RU so that browsers and email filters can block it for others. Do not re-enter any sensitive information on this site. ## Threat Details - Verdict: MALICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2026-03-19 18:24:06 - Registrar: R01-RU - IP: 87.120.187.146 ## Detection Status - VirusTotal: 9 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/domains/peashulai.ru - PhishDestroy: https://phishdestroy.io/domain/peashulai.ru/ - LLM endpoint: https://phishdestroy.io/domain/peashulai.ru/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/peashulai.ru/ Last updated: 2026-04-08