claim[.]piasma[.]network
“Apache2 Ubuntu Default Page: It works”
claim.piasma.network — Non vérifié. Type d'arnaque : Crypto Scam. Résumé des preuves: VirusTotal 15/93 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, BitDefender, CyRadar); PhishDestroy score 95/100.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain claim.piasma.network was registered on 21 February 2026 and is currently listed as active. It has been identified as a cryptocurrency drainer used to lure victims into submitting private keys or transferring funds to fraudulent wallets. The site is already blocked by the PhishDestroy blocklist and appears on one additional security blocklist, indicating that at least one external repository has flagged the host.
Technical resolution shows the domain resolves to the IP address 104.21.24.106, which is part of the Cloudflare network (AS13335) and geolocated to the United States. An HTTPS endpoint is presented with a certificate labeled WE1, and the web server returns HTTP 200 responses, confirming that the page is actively serving content. The Gridinsoft trust engine assigns a score of 0 out of 100, reflecting an extremely low reputation.
VirusTotal scans have returned 14 positive detections out of 95 security vendors, reinforcing the malicious classification. The combination of a zero trust score, multiple vendor flags, and active blocklist entries suggests a high‑confidence crypto‑draining operation. No additional infrastructure such as command‑and‑control servers or secondary domains has been disclosed, leaving the full scope of the campaign uncertain.
Defenders should add claim.piasma.network to local deny lists, enforce outbound filtering for connections to the associated IP, and monitor for attempted cryptocurrency transactions that reference the domain. Continuous re‑evaluation of the host’s reputation is advised, as further indicators may emerge. Network telemetry that captures TLS handshakes to the WE1 certificate can aid in early detection of compromised clients.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Analyse VirusTotal
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif