pijasilver[.]icu
“WhatsApp Bot”
Resumen de las pruebas
This domain, pijasilver.icu, is flagged as an elevated-risk brand impersonation threat targeting Argent, a cryptocurrency wallet provider. Analysis indicates the domain was designed to deceive users into believing they were interacting with legitimate Argent services, likely through a fraudulent interface labeled as a WhatsApp Bot. Such impersonation tactics are commonly employed to harvest credentials, distribute malware, or facilitate unauthorized transactions, particularly in the cryptocurrency sector where irreversible transfers heighten the impact of successful attacks. Infrastructure analysis reveals the domain was registered on September 02, 2025, through PDR Ltd. d/b/a PublicDomainRegistry.com, a registrar frequently associated with malicious domains due to its low-cost and permissive registration policies. The domain resolved to IP address 172.67.207.141, hosted under AS13335 (Cloudflare, Inc.) in the United States, a common proxy service leveraged to obscure the true origin of phishing infrastructure. At the time of assessment, pijasilver.icu appeared on one security blocklist and was detected by 17 out of 95 security vendors on VirusTotal, indicating moderate but not universal recognition of its malicious nature. The absence of an SSL certificate further suggests a lack of basic security measures, increasing the likelihood of interception or tampering during data transmission. The domain has since been taken offline, though historical DNS records and cached content may still pose residual risks. Mitigation steps for organizations and end-users include immediate blacklisting of the domain and its associated IP address (172.67.207.141) across all security gateways and endpoint protection systems. Given the target brand (Argent), cryptocurrency wallet providers should issue alerts to users warning of impersonation attempts and reinforce multi-factor authentication (MFA) requirements for account access. Users who may have interacted with the domain are advised to revoke any connected wallet permissions, rotate credentials for associated accounts, and monitor transaction histories for unauthorized activity. Security teams should correlate this domain with other indicators of compromise, such as phishing emails or social engineering lures referencing Argent or WhatsApp-related services, to identify broader campaign patterns.
Data Coverage
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 13/08/2026
10 fuentes externas supervisadas Sin coincidencias
Cronología de detección
-
Cloudflare Radar
Análisis de Cloudflare Radar almacenado · Abrir análisis
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, nombres TLS y marcas de tiempo
ZONA SHORTDOT · PRUEBAS PÚBLICAS
.icu
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
ICANN OVERSIGHT
Acreditación y contexto RAA
Acreditación y contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análisis de VirusTotal
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.