appplasma[.]pics
“Plasma - Stablecoin infrastructure for instant payments”
PhishDestroy identifies appplasma.pics as an active crypto drainer domain designed to trick users into connecting cryptocurrency wallets under the guise of plasma donation. The site masquerades as a legitimate medical or charitable platform but silently drains connected wallets via malicious smart contract interactions. Security researchers have documented similar domains using Let's Encrypt SSL certificates to appear trustworthy while hosting drainer scripts that exploit wallet approval mechanisms. This domain was flagged through automated behavioral analysis that detected wallet interaction patterns consistent with known crypto drainer toolkits, including signature requests for token transfers and NFT approvals that exceed normal donation functionality.
This domain poses a high immediate risk to cryptocurrency users due to its active drainer functionality. Technical indicators include registration through Porkbun, LLC on September 25, 2025, resolution to IP address 52.33.207.7, and current status as unflagged by VirusTotal with 2/95 antivirus detections as of the latest scan. The Let's Encrypt SSL certificate provides a false sense of security while the domain actively serves malicious JavaScript payloads. PhishDestroy's threat intelligence network has linked this domain to similar drainer campaigns targeting plasma donation enthusiasts, with observed similarities in wallet interaction prompts and transaction simulation techniques.
Users who visited appplasma.pics should immediately revoke any wallet approvals granted to this domain through their wallet's connection settings. Disconnect the wallet entirely from any unknown dApps and transfer remaining assets to a new wallet address. Scan all connected devices for malware using reputable antivirus software, as drainer sites often distribute additional payloads. Report any suspicious transactions to your wallet provider immediately. Monitor blockchain explorers for unauthorized transfers and consider using hardware wallets for enhanced security with crypto donations. Users should also clear browser cache and disable wallet extensions temporarily to prevent reinfection. This domain remains active and continues to evolve, so immediate action is critical to prevent financial loss.
Alur Tanggapan Ancaman Pipeline
Cakupan daftar blokir
10 sumber · disinkronkan 10/08/2026
Tangkapan tersimpan
Intelijen Domain
Detail teknisDNS, nama TLS, dan stempel waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknologi
10 teknologi dengan keyakinan tinggi teridentifikasi
Analisis VirusTotal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive