plasmalabs[.]us
Pemeriksaan phishing dan keamanan plasmalabs.us
plasmalabs.us — Terakhir diketahui aktif (HTTP 200). Ringkasan bukti: VirusTotal 2/91 (ChainPatrol, Gridinsoft); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 88/100.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Analysis indicates that the domain plasmalabs.us is actively serving web content over HTTPS with a valid GoDaddy DV certificate. The site resolves to the IPv4 address 13.248.213.45, which is hosted in the AWS Global Accelerator network in the United States (California). The domain was registered on 30 April 2026, and an HTTP GET request returns a 200 status code, confirming that the hosting infrastructure is operational. VirusTotal scans have identified the domain as malicious in three out of ninety‑five vendor engines, and Gridinsoft assigns a trust score of zero out of one hundred, reflecting a high confidence of abuse. AlienVault OTX records the domain in eight distinct threat‑intel pulses, and it appears on three public blocklists. The domain is currently blocked by multiple sink‑hole services, including PhishDestroy, MetaMask, and SEAL, reinforcing the view that it is being used for fraudulent activity. The specific brand or service being spoofed by plasmalabs.us has not been disclosed in the available intelligence, leaving the precise lure unknown. However, the generic phishing classification, combined with the rapid registration date and the use of a reputable TLS certificate, matches a pattern observed in recent phishing campaigns that leverage newly registered domains to gain user trust. Defenders should add 13.248.213.45 and plasmalabs.us to deny‑list configurations, enforce strict URL filtering, and monitor for TLS handshakes that present the GoDaddy DV certificate chain. Network traffic to the AWS Global Accelerator edge should be logged, and any credential submission attempts to the domain should be flagged for investigation. Continuous threat‑intel feeds should be consulted for updates on associated payloads or compromised accounts linked to this infrastructure.
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
Analisis VirusTotal
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive