claim[.]piasma[.]network
“Apache2 Ubuntu Default Page: It works”
Riepilogo delle prove
The domain claim.piasma.network was registered on 21 February 2026 and is currently listed as active. It has been identified as a cryptocurrency drainer used to lure victims into submitting private keys or transferring funds to fraudulent wallets. The site is already blocked by the PhishDestroy blocklist and appears on one additional security blocklist, indicating that at least one external repository has flagged the host.
Technical resolution shows the domain resolves to the IP address 104.21.24.106, which is part of the Cloudflare network (AS13335) and geolocated to the United States. An HTTPS endpoint is presented with a certificate labeled WE1, and the web server returns HTTP 200 responses, confirming that the page is actively serving content. The Gridinsoft trust engine assigns a score of 0 out of 100, reflecting an extremely low reputation.
VirusTotal scans have returned 14 positive detections out of 95 security vendors, reinforcing the malicious classification. The combination of a zero trust score, multiple vendor flags, and active blocklist entries suggests a high‑confidence crypto‑draining operation. No additional infrastructure such as command‑and‑control servers or secondary domains has been disclosed, leaving the full scope of the campaign uncertain.
Defenders should add claim.piasma.network to local deny lists, enforce outbound filtering for connections to the associated IP, and monitor for attempted cryptocurrency transactions that reference the domain. Continuous re‑evaluation of the host’s reputation is advised, as further indicators may emerge. Network telemetry that captures TLS handshakes to the WE1 certificate can aid in early detection of compromised clients.
Data Coverage
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 13/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Analisi di VirusTotal
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo